VYPR

Remote Access Clients

by Checkpoint

CVEs (5)

  • CVE-2019-8459CriJun 20, 2019
    risk 0.64cvss 9.8epss 0.01

    Check Point Endpoint Security Client for Windows, with the VPN blade, before version E80.83, starts a process without using quotes in the path. This can cause loading of a previously placed executable with a name similar to the parts of the path, instead of the intended one.

  • CVE-2021-30360HigJan 10, 2022
    risk 0.51cvss 7.8epss 0.01

    Users have access to the directory where the installation repair occurs. Since the MS Installer allows regular users to run the repair, an attacker can initiate the installation repair and place a specially crafted EXE in the repair folder which runs with the Check Point Remote…

  • CVE-2019-8461HigAug 29, 2019
    risk 0.51cvss 7.8epss 0.01

    Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed. An attacker can leverage this to gain LPE using a specially crafted DLL placed in any PATH location…

  • CVE-2019-8458MedJun 20, 2019
    risk 0.29cvss 4.4epss 0.01

    Check Point Endpoint Security Client for Windows, with Anti-Malware blade installed, before version E81.00, tries to load a non-existent DLL during an update initiated by the UI. An attacker with administrator privileges can leverage this to gain code execution within a Check…

  • CVE-2012-2753Jun 19, 2012
    risk 0.00cvss epss 0.00

    Untrusted search path vulnerability in TrGUI.exe in the Endpoint Connect (aka EPC) GUI in Check Point Endpoint Security R73.x and E80.x on the VPN blade platform, Endpoint Security VPN R75, Endpoint Connect R73.x, and Remote Access Clients E75.x allows local users to gain…