An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server.
Metrics
Affected Vendors & Products
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
| Link | Providers |
|---|---|
| https://support.checkpoint.com/results/sk/sk184263 |
|
History
Mon, 22 Dec 2025 08:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server. | |
| Title | Information Disclosure in Identity Agent Registry Keys | |
| Weaknesses | CWE-200 | |
| References |
| |
| Metrics |
cvssV3_1
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: checkpoint
Published:
Updated: 2025-12-22T07:57:50.103Z
Reserved: 2025-07-29T10:29:06.543Z
Link: CVE-2025-8304
No data.
Status : Received
Published: 2025-12-22T08:15:45.947
Modified: 2025-12-22T08:15:45.947
Link: CVE-2025-8304
No data.
OpenCVE Enrichment
No data.
Weaknesses