Security Advisory

CVE-2019-8458

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2019-06-20 16:44:33
Last updated 2024-08-04 21:17:31
Assigner checkpoint
CVSS score not scored
State PUBLISHED

Description

Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to load a non-existent DLL during an update initiated by the UI. An attacker with administrator privileges can leverage this to gain code execution within a Check Point Software Technologies signed binary, where under certain circumstances may cause the client to terminate.