Total vulnerabilities in the database
Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed. An attacker can leverage this to gain LPE using a specially crafted DLL placed in any PATH location accessible with write permissions to the user.
Software | From | Fixed in |
---|---|---|
checkpoint / endpoint_security | - | e81.30 |
checkpoint / capsule_docs_standalone_client | - | e80.20 |
checkpoint / remote_access_clients | - | e81.30 |