7.2
CVE-2024-24915
- EPSS 0.18%
- Veröffentlicht 29.06.2025 12:02:41
- Zuletzt bearbeitet 03.09.2025 15:22:49
- Erkennungen
SmartConsole Sensitive Credential Exposure via Memory Dump
Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Checkpoint ≫ Smartconsole Version r81.10 Update build400
Checkpoint ≫ Smartconsole Version r81.10 Update build402
Checkpoint ≫ Smartconsole Version r81.10 Update build404
Checkpoint ≫ Smartconsole Version r81.10 Update build406
Checkpoint ≫ Smartconsole Version r81.10 Update build407
Checkpoint ≫ Smartconsole Version r81.10 Update build409
Checkpoint ≫ Smartconsole Version r81.10 Update build410
Checkpoint ≫ Smartconsole Version r81.10 Update build412
Checkpoint ≫ Smartconsole Version r81.10 Update build413
Checkpoint ≫ Smartconsole Version r81.10 Update build414
Checkpoint ≫ Smartconsole Version r81.10 Update build416
Checkpoint ≫ Smartconsole Version r81.10 Update build417
Checkpoint ≫ Smartconsole Version r81.10 Update build418
Checkpoint ≫ Smartconsole Version r81.10 Update build420
Checkpoint ≫ Smartconsole Version r81.10 Update build423
Checkpoint ≫ Smartconsole Version r81.10 Update build424
Checkpoint ≫ Smartconsole Version r81.10 Update build425
Checkpoint ≫ Smartconsole Version r81.10 Update build426
Checkpoint ≫ Smartconsole Version r81.10 Update build427
Checkpoint ≫ Smartconsole Version r81.10 Update build428
Checkpoint ≫ Smartconsole Version r81.10 Update build429
Checkpoint ≫ Smartconsole Version r81.20 Update build640
Checkpoint ≫ Smartconsole Version r81.20 Update build641
Checkpoint ≫ Smartconsole Version r81.20 Update build645
Checkpoint ≫ Smartconsole Version r81.20 Update build646
Checkpoint ≫ Smartconsole Version r81.20 Update build649
Checkpoint ≫ Smartconsole Version r81.20 Update build651
Checkpoint ≫ Smartconsole Version r81.20 Update build653
Checkpoint ≫ Smartconsole Version r81.20 Update build654
Checkpoint ≫ Smartconsole Version r81.20 Update build655
Checkpoint ≫ Smartconsole Version r81.20 Update build656
Checkpoint ≫ Smartconsole Version r81.20 Update build658
Checkpoint ≫ Smartconsole Version r81.20 Update build659
Checkpoint ≫ Smartconsole Version r81.20 Update build660
Checkpoint ≫ Smartconsole Version r81.20 Update build661
Checkpoint ≫ Smartconsole Version r81.20 Update build663
Checkpoint ≫ Smartconsole Version r82 Update build1051
Checkpoint ≫ Smartconsole Version r82 Update build1053
VulnDex Vulnerability Enrichment
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 0.18% | 0.071 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| NIST | 7.2 | 1.2 | 5.9 |
CVSS:3.1/AV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
|
| Checkpoint | 6.1 | 0.2 | 5.9 |
CVSS:3.1/AV:P/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
|
CWE-312 Cleartext Storage of Sensitive Information
The product stores sensitive information in cleartext within a resource that might be accessible to another control sphere.
CWE-316 Cleartext Storage of Sensitive Information in Memory
The product stores sensitive information in cleartext in memory.
https://support.checkpoint.com/results/sk/sk183545