ZeroHour

CVE-2020-6024

CVSS 3.1
7.8 high
EPSS
<1%p18
Published
()
Modified
Description

Check Point SmartConsole before R80.10 Build 185, R80.20 Build 119, R80.30 before Build 94, R80.40 before Build 415, and R81 before Build 548 were vulnerable to a possible local privilege escalation due to running executables from a directory with write access to all authenticated users.

Vendors
checkpoint
Products
smartconsole
Weakness
CWE-114, CWE-269
Vector
CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.