CVE-2024-24916

Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).
References
Configurations

Configuration 1 (hide)

AND
OR cpe:2.3:a:checkpoint:smartconsole:r81.10:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:smartconsole:r81.20:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 Aug 2025, 19:23

Type Values Removed Values Added
CPE cpe:2.3:a:checkpoint:smartconsole:r81.20:*:*:*:*:*:*:*
cpe:2.3:a:checkpoint:smartconsole:r81.10:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*
First Time Checkpoint
Microsoft windows
Checkpoint smartconsole
Microsoft
References () https://support.checkpoint.com/results/sk/sk183342 - () https://support.checkpoint.com/results/sk/sk183342 - Vendor Advisory

20 Jun 2025, 14:15

Type Values Removed Values Added
Summary
  • (es) Es posible que se carguen y ejecuten DLL no confiables en el directorio del instalador, lo que puede provocar la ejecución de código arbitrario con los privilegios del instalador (administrador).

19 Jun 2025, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2025-06-19 14:15

Updated : 2025-08-26 19:23


NVD link : CVE-2024-24916

Mitre link : CVE-2024-24916

CVE.ORG link : CVE-2024-24916


JSON object : View

Products Affected

checkpoint

  • smartconsole

microsoft

  • windows
CWE
CWE-427

Uncontrolled Search Path Element