High severity7.2NVD Advisory· Published Jul 26, 2023· Updated Jun 17, 2026
CVE-2023-28130
CVE-2023-28130
Description
Local user may lead to privilege escalation using Gaia Portal hostnames page.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
6cpe:2.3:a:checkpoint:gaia_portal:r80.40:-:*:*:*:*:*:*+ 4 more
- cpe:2.3:a:checkpoint:gaia_portal:r80.40:-:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:gaia_portal:r81.10:-:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:gaia_portal:r81.20:-:*:*:*:*:*:*
- cpe:2.3:a:checkpoint:gaia_portal:r81:-:*:*:*:*:*:*
- (no CPE)range: R81.10
- Range: R81.10
Patches
Vulnerability mechanics
References
5- pentests.nl/pentest-blog/cve-2023-28130-command-injection-in-check-point-gaia-portal/nvdExploitThird Party Advisory
- packetstormsecurity.com/files/173918/Checkpoint-Gaia-Portal-R81.10-Remote-Command-Execution.htmlnvdThird Party Advisory
- seclists.org/fulldisclosure/2023/Aug/4nvdMailing ListThird Party Advisory
- support.checkpoint.com/results/sk/sk181311nvdVendor Advisory
- seclists.org/fulldisclosure/2023/Jul/43nvdNot Applicable
News mentions
0No linked articles in our index yet.