> Source: [sk179128](https://support.checkpoint.com/results/sk/sk179128)

# sk179128 - Check Point Response to CVE-2021-30361 - Gaia Portal Authenticated Command Injection

| Property | Value |
|----------|-------|
| Solution ID | sk179128 |
| Date Created | 2022-05-10 |
| Last Modified | 2025-06-18 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server |
| Versions | R81.10 (EOS), R81 (EOS), R81.10 (EOS), R81 (EOS) |
| OS | Gaia |

## Symptoms

- The "Security Management GUI Clients" feature in Check Point Gaia Portal allows authenticated administrators with permission for the GUI Clients settings to inject a CLI command that can run on the Gaia OS.
This issue was discovered and responsibly disclosed by Christophe Schleypen of NATO Cyber Security Centre Pentesting and received ID [CVE-2021-30361](https://www.cve.org/CVERecord?id=CVE-2021-30361).

<br />

## Solution

This problem was fixed. The fix is included starting from:

* [Check Point R81.20](https://support.checkpoint.com/results/sk/sk173903)
* [Jumbo Hotfix Accumulator for R81.10](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81.10/Default.htm) starting from Take 22
* [Jumbo Hotfix Accumulator for R81](https://sc1.checkpoint.com/documents/Jumbo_HFA/R81/Default.htm) starting from Take 60
* [Jumbo Hotfix Accumulator for R80.40](https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.40/Default.htm) starting from Take 150
* [Jumbo Hotfix Accumulator for R80.30](https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.30/Default.htm) starting from Take 251
* [Jumbo Hotfix Accumulator for R80.20](https://sc1.checkpoint.com/documents/Jumbo_HFA/R80.20/Default.htm) starting from Take 208
* [Jumbo Hotfix Accumulator for R80.10](https://support.checkpoint.com/results/sk/sk116380) starting from Take 298

<br />

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
