CVE Database
/

CVE-2019-8452

Back to search

CVE-2019-8452

Published: Apr 22, 2019

Modified: Aug 4, 2024

PUBLISHED

Description

A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will get its permission changed so that all users can access that linked file. Doing this on files with limited access gains the local attacker higher privileges to the file.

VendorProductVersions

Check Point ZoneAlarm

Check Point ZoneAlarm

affected
Check Point ZoneAlarm up to 15.4.062

Check Point ZoneAlarm

Check Point Endpoint Security client for Windows

affected
Check Point Endpoint Security client for Windows before E80.96

Weaknesses (CWE)

Security Training

Train your team to recognize and prevent security threats with our comprehensive security awareness program.

Start Training

Vulnerability Scanning

Discover vulnerabilities in your applications and infrastructure before attackers do.

Scan Now