{"api_version":"1","generated_at":"2026-04-23T11:33:32+00:00","cve":"CVE-2019-8452","urls":{"html":"https://cve.report/CVE-2019-8452","api":"https://cve.report/api/cve/CVE-2019-8452.json","docs":"https://cve.report/api","cve_org":"https://www.cve.org/CVERecord?id=CVE-2019-8452","nvd":"https://nvd.nist.gov/vuln/detail/CVE-2019-8452"},"summary":{"title":"CVE-2019-8452","description":"A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will get its permission changed so that all users can access that linked file. Doing this on files with limited access gains the local attacker higher privileges to the file.","state":"PUBLIC","assigner":"cve@checkpoint.com","published_at":"2019-04-22 22:29:00","updated_at":"2020-10-22 17:17:00"},"problem_types":["CWE-59"],"metrics":[],"references":[{"url":"https://www.zonealarm.com/software/release-history/zafavfw.html#15.4.260.17960","name":"https://www.zonealarm.com/software/release-history/zafavfw.html#15.4.260.17960","refsource":"MISC","tags":["Vendor Advisory"],"title":"ZoneAlarm Free Antivirus + Firewall release history official page | ZoneAlarm","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk150012","name":"https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk150012","refsource":"CONFIRM","tags":["Vendor Advisory"],"title":"Enterprise Endpoint Security E80.96 Windows Clients","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"http://packetstormsecurity.com/files/154754/CheckPoint-Endpoint-Security-Client-ZoneAlarm-Privilege-Escalation.html","name":"http://packetstormsecurity.com/files/154754/CheckPoint-Endpoint-Security-Client-ZoneAlarm-Privilege-Escalation.html","refsource":"MISC","tags":["Exploit","Third Party Advisory","VDB Entry"],"title":"CheckPoint Endpoint Security Client / ZoneAlarm Privilege Escalation ≈ Packet Storm","mime":"text/html","httpstatus":"200","archivestatus":"200"},{"url":"https://www.cve.org/CVERecord?id=CVE-2019-8452","name":"CVE Program record","refsource":"CVE.ORG","tags":["canonical"]},{"url":"https://nvd.nist.gov/vuln/detail/CVE-2019-8452","name":"NVD vulnerability detail","refsource":"NVD","tags":["canonical","analysis"]}],"affected":[],"timeline":[],"solutions":[],"workarounds":[],"exploits":[],"credits":[],"nvd_cpes":[{"cve_year":"2019","cve_id":"8452","vulnerable":"1","versionEndIncluding":"","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"checkpoint","cpe5":"endpoint_security","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2019","cve_id":"8452","vulnerable":"1","versionEndIncluding":"1","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"checkpoint","cpe5":"endpoint_security","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"windows","cpe12":"*","cpe13":"*"},{"cve_year":"2019","cve_id":"8452","vulnerable":"1","versionEndIncluding":"15.4.062","cpe1":"cpe","cpe2":"2.3","cpe3":"a","cpe4":"checkpoint","cpe5":"zonealarm","cpe6":"*","cpe7":"*","cpe8":"*","cpe9":"*","cpe10":"*","cpe11":"*","cpe12":"*","cpe13":"*"}],"vendor_comments":[],"enrichments":{"kev":null,"epss":null,"legacy_qids":[]},"source_records":{"cve_program":{"data_type":"CVE","data_format":"MITRE","data_version":"4.0","CVE_data_meta":{"ID":"CVE-2019-8452","ASSIGNER":"cve@checkpoint.com","STATE":"PUBLIC"},"affects":{"vendor":{"vendor_data":[{"vendor_name":"Check Point ZoneAlarm","product":{"product_data":[{"product_name":"Check Point ZoneAlarm","version":{"version_data":[{"version_value":"Check Point ZoneAlarm up to 15.4.062"}]}},{"product_name":"Check Point Endpoint Security client for Windows","version":{"version_data":[{"version_value":"Check Point Endpoint Security client for Windows before E80.96"}]}}]}}]}},"problemtype":{"problemtype_data":[{"description":[{"lang":"eng","value":"CWE-65"}]}]},"references":{"reference_data":[{"refsource":"MISC","name":"https://www.zonealarm.com/software/release-history/zafavfw.html#15.4.260.17960","url":"https://www.zonealarm.com/software/release-history/zafavfw.html#15.4.260.17960"},{"refsource":"CONFIRM","name":"https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk150012","url":"https://supportcenter.us.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk150012"},{"refsource":"MISC","name":"http://packetstormsecurity.com/files/154754/CheckPoint-Endpoint-Security-Client-ZoneAlarm-Privilege-Escalation.html","url":"http://packetstormsecurity.com/files/154754/CheckPoint-Endpoint-Security-Client-ZoneAlarm-Privilege-Escalation.html"}]},"description":{"description_data":[{"lang":"eng","value":"A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will get its permission changed so that all users can access that linked file. Doing this on files with limited access gains the local attacker higher privileges to the file."}]}},"nvd":{"publishedDate":"2019-04-22 22:29:00","lastModifiedDate":"2020-10-22 17:17:00","problem_types":["CWE-59"],"metrics":{"baseMetricV3":{"cvssV3":{"version":"3.1","vectorString":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H","attackVector":"LOCAL","attackComplexity":"LOW","privilegesRequired":"LOW","userInteraction":"NONE","scope":"UNCHANGED","confidentialityImpact":"HIGH","integrityImpact":"HIGH","availabilityImpact":"HIGH","baseScore":7.8,"baseSeverity":"HIGH"},"exploitabilityScore":1.8,"impactScore":5.9},"baseMetricV2":{"cvssV2":{"version":"2.0","vectorString":"AV:L/AC:L/Au:N/C:P/I:P/A:P","accessVector":"LOCAL","accessComplexity":"LOW","authentication":"NONE","confidentialityImpact":"PARTIAL","integrityImpact":"PARTIAL","availabilityImpact":"PARTIAL","baseScore":4.6},"severity":"MEDIUM","exploitabilityScore":3.9,"impactScore":6.4,"acInsufInfo":false,"obtainAllPrivilege":false,"obtainUserPrivilege":false,"obtainOtherPrivilege":false,"userInteractionRequired":false}},"configurations":{"CVE_data_version":"4.0","nodes":[{"operator":"OR","children":[],"cpe_match":[{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:checkpoint:zonealarm:*:*:*:*:*:*:*:*","versionEndIncluding":"15.4.062","cpe_name":[]},{"vulnerable":true,"cpe23Uri":"cpe:2.3:a:checkpoint:endpoint_security:*:*:*:*:*:windows:*:*","versionEndExcluding":"e80.96","cpe_name":[]}]}]}},"legacy_mitre":{"record":{"CveYear":"2019","CveId":"8452","Ordinal":"146288","Title":"CVE-2019-8452","CVE":"CVE-2019-8452","Year":"2019"},"notes":[{"CveYear":"2019","CveId":"8452","Ordinal":"1","NoteData":"A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will get its permission changed so that all users can access that linked file. Doing this on files with limited access gains the local attacker higher privileges to the file.","Type":"Description","Title":null},{"CveYear":"2019","CveId":"8452","Ordinal":"2","NoteData":"2019-04-22","Type":"Other","Title":"Published"},{"CveYear":"2019","CveId":"8452","Ordinal":"3","NoteData":"2019-10-07","Type":"Other","Title":"Modified"}]}}}