Vulnerabilities > Checkpoint > Endpoint Security > e80.96

DATE CVE VULNERABILITY TITLE RISK
2022-05-12 CVE-2022-23742 Link Following vulnerability in Checkpoint Endpoint Security
Check Point Endpoint Security Client for Windows versions earlier than E86.40 copy files for forensics reports from a directory with low privileges.
local
low complexity
checkpoint CWE-59
7.8
2022-01-10 CVE-2021-30360 Uncontrolled Search Path Element vulnerability in Checkpoint Endpoint Security
Users have access to the directory where the installation repair occurs.
local
low complexity
checkpoint CWE-427
7.2
2020-12-03 CVE-2020-6021 Uncontrolled Search Path Element vulnerability in Checkpoint Endpoint Security
Check Point Endpoint Security Client for Windows before version E84.20 allows write access to the directory from which the installation repair takes place.
4.4
2020-11-02 CVE-2020-6014 Untrusted Search Path vulnerability in Checkpoint Endpoint Security E80.96
Check Point Endpoint Security Client for Windows, with Anti-Bot or Threat Emulation blades installed, before version E83.20, tries to load a non-existent DLL during a query for the Domain Name.
4.4
2019-08-29 CVE-2019-8461 Untrusted Search Path vulnerability in Checkpoint products
Check Point Endpoint Security Initial Client for Windows before version E81.30 tries to load a DLL placed in any PATH location on a clean image without Endpoint Client installed.
6.8