HIGH · 7.8

CVE-2019-8461

Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed. An attacker can lever...

Vulnerability Description

Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed. An attacker can leverage this to gain LPE using a specially crafted DLL placed in any PATH location accessible with write permissions to the user.

CVSS Score

7.8

HIGH

CVSS:3.0/AV:L/AC:L/PR:N/UI:R/S:U/C:H/I:H/A:H
Attack Vector
LOCAL
Attack Complexity
LOW
Privileges Required
NONE
User Interaction
REQUIRED
Scope
UNCHANGED
Confidentiality
HIGH
Integrity
HIGH
Availability
HIGH

Affected Products

VendorProductVersions
CheckpointCapsule Docs Standalone Client< e80.20
CheckpointEndpoint Security< e81.30
CheckpointRemote Access Clients< e81.30

Related Weaknesses (CWE)

References

FAQ

What is CVE-2019-8461?

CVE-2019-8461 is a vulnerability with a CVSS score of 7.8 (HIGH). Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed. An attacker can lever...

How severe is CVE-2019-8461?

CVE-2019-8461 has been rated HIGH with a CVSS base score of 7.8/10. Review the CVSS metrics above for detailed severity breakdown.

Is there a patch for CVE-2019-8461?

Check the references section above for vendor advisories and patch information. Affected products include: Checkpoint Capsule Docs Standalone Client, Checkpoint Endpoint Security, Checkpoint Remote Access Clients.