Harmony Endpoint and VPN clients
CVE-2022-23743: Check Point ZoneAlarm before version 15.8.200.19118 allows a local actor to escalate privileges during the…
Check Point ZoneAlarm before version 15.8.200.19118 allows a local actor to escalate privileges during the upgrade process.
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| ZoneAlarm. before v15.8 | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
Check Point ZoneAlarm before version 15.8.200.19118 allows a local actor to escalate privileges during the upgrade process. In addition, weak permissions in the ProgramData\CheckPoint\ZoneAlarm\Data\Updates directory allow a local attacker the ability to execute an arbitrary file write, leading to execution of code as local system, in ZoneAlarm versions before v15.8.211.192119
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.