Harmony Endpoint and VPN clients
CVE-2026-10847: Local Privilege Escalation vulnerability in Check Point Identity Agent Full for Windows OS
A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS.
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| Identity Agent Versions prior to 81.087 | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation could allow an attacker to gain elevated privileges on the affected Windows endpoint.
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.