Lucene search

K
cvelistMitreCVELIST:CVE-2022-41604
HistorySep 27, 2022 - 2:17 a.m.

CVE-2022-41604

2022-09-2702:17:14
mitre
www.cve.org
1
check point zonealarm
extreme security
privilege escalation
weak permissions
self-protection
driver bypass
nt authority\system

8.7 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges. This occurs because of weak permissions for the %PROGRAMDATA%\CheckPoint\ZoneAlarm\Data\Updates directory, and a self-protection driver bypass that allows creation of a junction directory. This can be leveraged to perform an arbitrary file move as NT AUTHORITY\SYSTEM.

8.7 High

AI Score

Confidence

High

0.0004 Low

EPSS

Percentile

5.1%

Related for CVELIST:CVE-2022-41604