2.3
CVE-2022-23744
- EPSS 4.35%
- Veröffentlicht 07.07.2022 16:15:09
- Zuletzt bearbeitet 21.11.2024 06:49:13
- Erkennungen
Check Point Endpoint before version E86.50 failed to protect against specific registry change which allowed to disable endpoint protection by a local administrator.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Checkpoint ≫ Endpoint Security Version e83
Checkpoint ≫ Endpoint Security Version e84
Checkpoint ≫ Endpoint Security Version e85
Checkpoint ≫ Endpoint Security Version e86.10
Checkpoint ≫ Endpoint Security Version e86.20
Checkpoint ≫ Endpoint Security Version e86.30
Checkpoint ≫ Endpoint Security Version e86.40
Checkpoint ≫ Harmony Endpoint Version e83
Checkpoint ≫ Harmony Endpoint Version e84
Checkpoint ≫ Harmony Endpoint Version e85
Checkpoint ≫ Harmony Endpoint Version e86.10
Checkpoint ≫ Harmony Endpoint Version e86.20
Checkpoint ≫ Harmony Endpoint Version e86.30
Checkpoint ≫ Harmony Endpoint Version e86.40
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 4.35% | 0.9 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 2.3 | 0.8 | 1.4 |
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:N/A:L
|
| NIST | 2.1 | 3.9 | 2.9 |
AV:L/AC:L/Au:N/C:N/I:N/A:P
|
CWE-470 Use of Externally-Controlled Input to Select Classes or Code ('Unsafe Reflection')
The product uses external input with reflection to select which classes or code to use, but it does not sufficiently prevent the input from selecting improper classes or code.
https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk179609