📦

smartconsole

Vendor: checkpoint

Actively Exploited 0 CISA KEV List
PoC / Exploits 0 Code Available
Total RCEs 0 Remote Access
Total CVEs 5 Total Indexed
Avg. EPSS 0.10% Exploit Prob.
Latest CVE CVE-2024-24915 Jun 29

Security Vulnerability Index

Page 1 / 1
6.1 CVSS

Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.

EPSS: 0.14%
6.5 CVSS

Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).

EPSS: 0.11%
7.8 CVSS

Check Point SmartConsole before R80.10 Build 185, R80.20 Build 119, R80.30 before Build 94, R80.40 before Build 415, and R81 before Build 548 were vulnerable to a possible local privilege escalation due to running executables from a directory with write access to all authenticated users.

EPSS: 0.04%