Flowmon Command Injection (CVE-2024-2389)

Related Vulnerabilities: CVE-2024-2389  

Check Point Reference: CPAI-2024-0255 Date Published: 9 May 2024 Severity: Critical Last Updated: Thursday 09 May, 2024 Source: Industry Reference:CVE-2024-2389
Protection Provided by:

Security Gateway
R81, R80, R77, R75

Who is Vulnerable? Flowmon versions 11.x prior to 11.1.14
Flowmon versions 12.x prior to 12.3.5
Flowmon versions 10.x and prior Vulnerability Description A command injection vulnerability exists in Flowmon. Successful exploitation of this vulnerability could allow a remote attacker to execute arbitrary commands on the affected system.