CVE-2024-24916
MEDIUMInstaller - Code Injection
Title source: llmDescription
Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).
Scores
CVSS v3
6.5
EPSS
0.0004
EPSS Percentile
12.6%
Attack Vector
LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H
Classification
CWE
CWE-427
Status
published
Affected Products (26)
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
... and 11 more
Timeline
Published
Jun 19, 2025
Tracked Since
Feb 18, 2026