CVE-2024-24916

MEDIUM

Installer - Code Injection

Title source: llm

Description

Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).

Scores

CVSS v3 6.5
EPSS 0.0004
EPSS Percentile 12.6%
Attack Vector LOCAL
CVSS:3.1/AV:L/AC:L/PR:H/UI:R/S:U/C:H/I:H/A:H

Classification

CWE
CWE-427
Status published

Affected Products (26)

checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
checkpoint/smartconsole
... and 11 more

Timeline

Published Jun 19, 2025
Tracked Since Feb 18, 2026