Harmony Endpoint and VPN clients
CVE-2023-28134: Local Privliege Escalation in Check Point Endpoint Security Remediation Service
Local attacker can escalate privileges on affected installations of Check Point Harmony Endpoint/ZoneAlarm Extreme Security.
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| Harmony Endpoint. E84.x (EOL), E85 | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
Local attacker can escalate privileges on affected installations of Check Point Harmony Endpoint/ZoneAlarm Extreme Security. An attacker must first obtain the ability to execute low-privileged code on the target system in order to exploit this vulnerability.
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.