CVE-2008-7009

Check Point ZoneAlarm Security Suite 7.0.483.000 and 8.0.020.000 - Local Buffer Overflow via Long Path

Title source: llm
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for CVE-2008-7009. PoCs published by Juan Pablo Lopez Yacubian.

AI-analyzed exploit summary This exploit demonstrates a buffer overflow vulnerability in ZoneAlarm Security Suite 7.0.483.000 by creating nested directories with long paths, potentially leading to arbitrary code execution with SYSTEM privileges.

Description

Buffer overflow in multiscan.exe in Check Point ZoneAlarm Security Suite 7.0.483.000 and 8.0.020.000 allows local users to execute arbitrary code via a file or directory with a long path. NOTE: some of these details are obtained from third party information.

Exploits (1)

exploitdb WORKING POC VERIFIED
by Juan Pablo Lopez Yacubian · textdoswindows
https://www.exploit-db.com/exploits/32356

This exploit demonstrates a buffer overflow vulnerability in ZoneAlarm Security Suite 7.0.483.000 by creating nested directories with long paths, potentially leading to arbitrary code execution with SYSTEM privileges.

Classification
Working Poc 90%
Attack Type
Rce
Complexity
Moderate
Reliability
Reliable
Target: ZoneAlarm Security Suite 7.0.483.000
No auth needed
Prerequisites: Ability to create nested directories with long paths on the target system
devstral-2 · analyzed Feb 16, 2026 Full analysis →

References (7)

Core 7
Core References
Vendor Advisory third-party-advisory x_refsource_secunia
http://secunia.com/advisories/31832
Third Party Advisory, VDB Entry mailing-list x_refsource_bugtraq
http://www.securityfocus.com/archive/1/496226/100/0/threaded
Third Party Advisory, VDB Entry vdb-entry x_refsource_sectrack
http://www.securitytracker.com/id?1020859
Third Party Advisory, VDB Entry vdb-entry x_refsource_osvdb
http://osvdb.org/48097
Third Party Advisory, VDB Entry vdb-entry x_refsource_xf
https://exchange.xforce.ibmcloud.com/vulnerabilities/45082
Vendor Advisory vdb-entry x_refsource_vupen
http://www.vupen.com/english/advisories/2008/2556
Exploit vdb-entry x_refsource_bid
http://www.securityfocus.com/bid/31124

Scores

EPSS 0.0106
EPSS Percentile 60.1%

Details

CWE
CWE-119
Status published
Products (2)
checkpoint/zonealarm 7.0.483.000
checkpoint/zonealarm 8.0.020.000
Published Aug 19, 2009
Tracked Since Feb 18, 2026