CVE 7.5 HIGH

Local privilege escalation in Harmony SASE Windows Agent_CVE-2025-9142

7.5 / 10
HIGH
CVSS:3.1/AV:L/AC:H/PR:L/UI:R/S:C/C:H/I:H/A:H

Description

A local user can trigger Harmony SASE Windows client to write or delete files outside the intended certificate working directory.

Basic Information

ID CVE-2025-9142
Source checkpoint
Published Jan 14, 2026 at 14:30
Modified Jan 14, 2026 at 14:50

Affected Product

Vendor checkpoint
Product Hramony SASE
Version Check Point Harmony SASE Windows Agent versions prior to 12.2
Affected Versions checkpoint Hramony SASE Check Point Harmony SASE Windows Agent versions prior to 12.2

CWE Classification

References

💭 Join the Security Discussion

🔒 Your email address will not be published. Required fields are marked *

⚠️ Please be respectful and constructive in your comments. Security discussions should remain professional.