First published: Tue Jun 19 2012(Updated: )
Untrusted search path vulnerability in TrGUI.exe in the Endpoint Connect (aka EPC) GUI in Check Point Endpoint Security R73.x and E80.x on the VPN blade platform, Endpoint Security VPN R75, Endpoint Connect R73.x, and Remote Access Clients E75.x allows local users to gain privileges via a Trojan horse DLL in the current working directory.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Checkpoint Endpoint Connect | =r73 | |
Checkpoint Endpoint Security | =e80 | |
Checkpoint Endpoint Security | =e80.10 | |
Checkpoint Endpoint Security | =e80.20 | |
Checkpoint Endpoint Security | =e80.30 | |
Checkpoint Endpoint Security | =r73 | |
Checkpoint Endpoint Security Vpn | =r75 | |
Checkpoint Remote Access Clients | =e75 | |
Checkpoint Remote Access Clients | =e75.10 | |
Checkpoint Remote Access Clients | =e75.20 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2012-2753 has a high severity rating, as it allows local users to gain elevated privileges through an untrusted search path vulnerability.
To fix CVE-2012-2753, users should update to the latest version of Check Point Endpoint Security that addresses this vulnerability.
CVE-2012-2753 affects Check Point Endpoint Connect R73, R75, Endpoint Security E80.x, and Remote Access Clients E75.x.
The potential impact of CVE-2012-2753 includes unauthorized privilege escalation, which could lead to further exploitation of the system.
CVE-2012-2753 is a known vulnerability that has been reported and recognized in various security advisories and databases.