A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation could allow an attacker to gain elevated privileges on the affected Windows endpoint.
| Vendor | Product | Versions |
|---|---|---|
| check point | identity agent full | Versions prior to 81.087.0000 |
Updated vendor to 'Check Point', marked exploit as available, and added new CWE-20.
Updated description with new details about the uncontrolled search path and confirmed no exploit is available.
Initial creation