A local attacker can erscalate privileges on affected Check Point ZoneAlarm ExtremeSecurity NextGen, Identity Agent for Windows, and Identity Agent for Windows Terminal Server. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.
References
Link | Resource |
---|---|
https://support.checkpoint.com/results/sk/sk182219 | Vendor Advisory |
https://support.checkpoint.com/results/sk/sk182219 | Vendor Advisory |
Configurations
Configuration 1 (hide)
AND |
|
History
29 Sep 2025, 13:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) A local attacker can erscalate privileges on affected Check Point ZoneAlarm ExtremeSecurity NextGen, Identity Agent for Windows, and Identity Agent for Windows Terminal Server. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system. |
29 Sep 2025, 11:15
Type | Values Removed | Values Added |
---|---|---|
Summary | (en) AlocalattackercanescalateprivilegesonaffectedCheckPointZoneAlarmExtremeSecurityNextGen,IdentityAgentforWindows,andIdentityAgentforWindowsTerminalServer.Toexploitthisvulnerability,anattackermustfirstobtaintheabilitytoexecutelocalprivilegedcodeonthetargetsystem. |
26 Aug 2025, 18:42
Type | Values Removed | Values Added |
---|---|---|
CPE | cpe:2.3:a:checkpoint:identity_agent:*:*:*:*:*:*:*:* cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:* cpe:2.3:a:checkpoint:zonealarm_extreme_security:*:*:*:*:*:*:*:* |
|
First Time |
Microsoft
Checkpoint zonealarm Extreme Security Checkpoint identity Agent Microsoft windows Checkpoint |
|
References | () https://support.checkpoint.com/results/sk/sk182219 - Vendor Advisory |
21 Nov 2024, 08:59
Type | Values Removed | Values Added |
---|---|---|
References | () https://support.checkpoint.com/results/sk/sk182219 - |
03 Jul 2024, 01:48
Type | Values Removed | Values Added |
---|---|---|
CVSS |
v2 : v3 : |
v2 : unknown
v3 : 7.3 |
Summary |
|
18 Apr 2024, 18:15
Type | Values Removed | Values Added |
---|---|---|
New CVE |
Information
Published : 2024-04-18 18:15
Updated : 2025-09-29 13:15
NVD link : CVE-2024-24910
Mitre link : CVE-2024-24910
CVE.ORG link : CVE-2024-24910
JSON object : View
Products Affected
checkpoint
- identity_agent
- zonealarm_extreme_security
microsoft
- windows
CWE
CWE-732
Incorrect Permission Assignment for Critical Resource