QID 375472
Date Published: 2021-05-05
QID 375472: Check Point Security Client Write Access to The Directory Vulnerability
Check Point has released the security update for Enterprise Endpoint Security E80.96 Windows Clients.
Affected version
Prior to Enterprise Endpoint Security E84.20 Windows Clients
QID Detection Logic(Authenticated)
It checks for vulnerable version of Enterprise Endpoint Security Windows Clients.
An attacker can initiate the installation repair and place a specially crafted DLL in the repair folder which will run with the Endpoint client privileges.
Solution
Refer to security advisory sk170512 to address this issue and obtain further details.
Vendor References
CVEs related to QID 375472
Software Advisories
| Advisory ID | Software | Component | Link |
|---|---|---|---|
| sk170512 |
|