Check Point Endpoint Security ClientÌáȨÎó²îÇ徲ͨ¸æ

Ðû²¼Ê±¼ä 2019-08-30

?Îó²î±àºÅºÍ¼¶±ð


CVE±àºÅ£ºCVE-2019-8461£¬ £¬£¬£¬£¬£¬£¬Î£ÏÕ¼¶±ð£º¸ßΣ£¬ £¬£¬£¬£¬£¬£¬CVSS·ÖÖµ£º¹Ù·½Î´ÆÀ¶¨


?Ó°Ïì°æ±¾


Check Point Endpoint Security Initial Client for Windows - Below Version E81.30


?Îó²î¸ÅÊö


Check Point Endpoint Security ClientÊÇÒÔÉ«ÁÐCheck Point¹«Ë¾µÄÒ»¿îÖÕ¶ËÇå¾²·À»¤Èí¼þ£¬ £¬£¬£¬£¬£¬£¬ËüÊÇÒ»¿î´øÓжà¸öÄ£¿£¿£¿£¿ £¿éµÄÈí¼þ£¬ £¬£¬£¬£¬£¬£¬°üÀ¨Êý¾ÝºÍÍøÂçÇå¾²£¬ £¬£¬£¬£¬£¬£¬¸ß¼¶Íþв·ÀÓùºÍȡ֤£¬ £¬£¬£¬£¬£¬£¬ÒÔ¼°Ô¶³Ì»á¼ûVPNÈí¼þ½â¾ö¼Æ»®£¬ £¬£¬£¬£¬£¬£¬ÆäÖв¿·ÖÄÚÈÝ×÷ΪWindowsЧÀÍÖ´ÐУ¬ £¬£¬£¬£¬£¬£¬¾ßÓж¥¼¶NT AUTHORITY \SYSTEMȨÏÞ¡£¡£¡£ ¡£¡£


»ùÓÚWindowsƽ̨µÄCheck Point Endpoint Security Client±£´æÌáȨÎó²î£¬ £¬£¬£¬£¬£¬£¬ÔÊÐíDZÔڵĹ¥»÷ÕßÉý¼¶È¨ÏÞ²¢Ê¹ÓÃSYSTEMȨÏÞÖ´ÐдúÂë¡£¡£¡£ ¡£¡£¹¥»÷Õß¿ÉÒÔʹÓÃϵͳ¼¶È¨ÏÞÔËÐжñÒâ¸ºÔØ£¬ £¬£¬£¬£¬£¬£¬²¢Í¨¹ýÈÆ¹ýÓ¦ÓóÌÐò°×Ãûµ¥À´Ìӱܷ´¶ñÒâÈí¼þ¼ì²â¡£¡£¡£ ¡£¡£


Çå¾²Ñо¿Ô±·¢Ã÷ ¡°¿Éͨ¹ý½«í§ÒâδÊðÃûµÄDLL¼ÓÔØµ½Check Point Endpoint SecurityÈí¼þʹÓõÄWindowsЧÀÍÖ®Ò»À´ÊµÏÖȨÏÞÌáÉýºÍ³¤ÆÚÐÔ¡±¡£¡£¡£ ¡£¡£¸ÃÎó²îÊÇÓÉÓÚʹÓò»ÊÜ¿ØÖƵÄËÑË÷·¾¶µ¼ÖµÄÇå¾²DLL¼ÓÔØÈ±·¦ÒÔ¼°Î´ÑéÖ¤Æä¼ÓÔØµÄDLLÊÇ·ñʹÓÃÊý×ÖÖ¤Êé×÷ΪHadarÏêϸÐÅÏ¢¾ÙÐÐÊðÃû¶øÒýÆðµÄ¡£¡£¡£ ¡£¡£


?Îó²îÑéÖ¤


POC£ºhttps://safebreach.com/Post/Check-Point-Endpoint-Security-Initial-Client-for-Windows-Privilege-Escalation-to-SYSTEM¡£¡£¡£ ¡£¡£


?ÐÞ¸´½¨Òé


Check PointÐû²¼°æ±¾¸üÐÂÐÞ¸´ÁË´ËÎó²î£ºhttps://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk160812#Endpoint%20Security%20Server%20Downloads¡£¡£¡£ ¡£¡£


?²Î¿¼Á´½Ó


https://www.bleepingcomputer.com/news/security/check-point-patches-privilege-escalation-flaw-in-endpoint-client/