An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server.
Metrics
Affected Vendors & Products
References
| Link | Providers |
|---|---|
| https://support.checkpoint.com/results/sk/sk184263 |
|
History
Tue, 23 Dec 2025 23:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Checkpoint
Checkpoint identity Agent Microsoft Microsoft windows |
|
| Vendors & Products |
Checkpoint
Checkpoint identity Agent Microsoft Microsoft windows |
Mon, 22 Dec 2025 17:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Mon, 22 Dec 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server. | |
| Title | Information Disclosure in Identity Agent Registry Keys | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: checkpoint
Published: 2025-12-22T07:57:50.103Z
Updated: 2025-12-22T17:05:37.189Z
Reserved: 2025-07-29T10:29:06.543Z
Link: CVE-2025-8304
Updated: 2025-12-22T17:05:30.854Z
Status : Awaiting Analysis
Published: 2025-12-22T08:15:45.947
Modified: 2025-12-23T14:51:52.650
Link: CVE-2025-8304
No data.