High severity7.8NVD Advisory· Published Mar 1, 2019· Updated Jun 17, 2026
CVE-2018-8790
CVE-2018-8790
Description
Check Point ZoneAlarm version 15.3.064.17729 and below expose a WCF service that can allow a local low privileged user to execute arbitrary code as SYSTEM.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3cpe:2.3:a:checkpoint:zonealarm:*:*:*:*:*:*:*:*+ 1 more
- cpe:2.3:a:checkpoint:zonealarm:*:*:*:*:*:*:*:*range: <=15.3.064.17729
- (no CPE)range: <=15.3.064.17729
- Check Point Software Technologies Ltd./ZoneAlarmv5Range: prior to version 15.3.064.17729
Patches
Vulnerability mechanics
References
4- www.securityfocus.com/bid/107254nvdThird Party AdvisoryVDB Entry
- supportcenter.checkpoint.com/supportcenter/portalnvdVendor Advisory
- www.zonealarm.com/software/release-history/zafavfw.htmlnvdRelease NotesVendor Advisory
- www.zonealarm.com/software/release-history/zafree.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.