---
cve: "CVE-2024-24912"
severity: "MEDIUM"
cvss: 6.7
epss: "0.2%"
vendor: "checkpoint"
kev: false
exploited: false
published: "2024-05-01 14:15:06"
tags: [cve, security, medium]
source: tsecurity.de CVE-Dossier
exported: "2026-09-23T00:41:25+02:00"
---

# CVE-2024-24912

> 6.7 MEDIUM

## Beschreibung

A local privilege escalation vulnerability has been identified in Harmony Endpoint Security Client for Windows versions E88.10 and below. To exploit this vulnerability, an attacker must first obtain the ability to execute local privileged code on the target system.

## CVSS-Vektor

```
CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
```

| Metrik | Wert | Bewertung |
|---|---|---|
| AV Angriffsvektor | Lokal | good |
| AC Komplexität | Gering | bad |
| PR Privilegien | Hoch | good |
| UI Interaktion | Keine | bad |
| S Scope | Unverändert | good |
| C Vertraulichkeit | Hoch | bad |
| I Integrität | Hoch | bad |
| A Verfügbarkeit | Hoch | bad |

## Referenzen

- <https://support.checkpoint.com/results/sk/sk182244>

---
_Exportiert aus dem [tsecurity.de CVE-Dossier](https://tsecurity.de/cve?cve=CVE-2024-24912) · Datenquellen: EUVD (ENISA), NVD, OSV, CISA KEV, FIRST EPSS, Exploit-DB, BSI BITS_
