CVE-2024-24912

A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.
Configurations

Configuration 1 (hide)

AND
cpe:2.3:a:checkpoint:harmony_endpoint:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

History

26 Aug 2025, 18:56

Type Values Removed Values Added
References () https://support.checkpoint.com/results/sk/sk182244 - () https://support.checkpoint.com/results/sk/sk182244 - Vendor Advisory
First Time Microsoft windows
Checkpoint harmony Endpoint
Microsoft
Checkpoint
CPE cpe:2.3:a:checkpoint:harmony_endpoint:*:*:*:*:*:*:*:*
cpe:2.3:o:microsoft:windows:-:*:*:*:*:*:*:*

21 Nov 2024, 08:59

Type Values Removed Values Added
References () https://support.checkpoint.com/results/sk/sk182244 - () https://support.checkpoint.com/results/sk/sk182244 -

03 Jul 2024, 01:48

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.7
Summary
  • (es) Se ha identificado una vulnerabilidad de escalada de privilegios local en Harmony Endpoint Security Client para las versiones E88.10 y anteriores de Windows. Para aprovechar esta vulnerabilidad, un atacante primero debe obtener la capacidad de ejecutar código privilegiado local en el sistema de destino.

01 May 2024, 14:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-05-01 14:15

Updated : 2025-08-26 18:56


NVD link : CVE-2024-24912

Mitre link : CVE-2024-24912

CVE.ORG link : CVE-2024-24912


JSON object : View

Products Affected

microsoft

  • windows

checkpoint

  • harmony_endpoint
CWE
CWE-732

Incorrect Permission Assignment for Critical Resource