Zonealarm
Vendor:
First CVE: Dec 31, 2005 · Active for 20 years
14
Total CVEs
More Total CVEs than 91% of tracked products
2.3
Avg CVEs / Year
Higher CVE frequency than 73% of tracked products
7.0
Avg CVSS
Higher Avg CVSS than 42% of tracked products
0.0%
KEV Rate
Bottom 1%
Trends Over Time
The number and severity of CVEs published that impact Zonealarm over time
Volume of CVEsAvg CVSS Base Score
First CVE
Dec 31, 2005
20 years ago
Most Recent CVE
Sep 27, 2022
1,398 days ago
CVE Severity & Scoring
Zonealarm14 CVEs
29%
71%
All CVEs352,713 CVEs
45%
40%
11%
MediumHigh
Attack Vector
Local8 (57.1%)
Network0 (0.0%)
Unknown6 (42.9%)
Physical0 (0.0%)
Adjacent Network0 (0.0%)
Attack Complexity
Low8 (57.1%)
High0 (0.0%)
Unknown6 (42.9%)
User Interaction
None8 (57.1%)
Unknown6 (42.9%)
Required0 (0.0%)
Privileges Required
Low8 (57.1%)
High0 (0.0%)
None0 (0.0%)
Unknown6 (42.9%)
Top CVEs
Signals from CVEs in this product scope (14 CVEs).
14 CVEs · Highest risk first
| CVE | Published | CVSS | Risk | KEV | Exploit |
|---|---|---|---|---|---|
CVE-2019-8452HIGH A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will g | Apr 22, 2019 | 7.8 | 35 | NO | YES |
CVE-2022-41604HIGH Check Point ZoneAlarm Extreme Security before 15.8.211.19229 allows local users to escalate privileges. This occurs because of weak permissions for the %PROGRAMDATA%\CheckPoint\Zon | Sep 27, 2022 | 8.8 | 27 | NO | NO |
CVE-2008-7009MEDIUM Buffer overflow in multiscan.exe in Check Point ZoneAlarm Security Suite 7.0.483.000 and 8.0.020.000 allows local users to execute arbitrary code via a file or directory with a lon | Aug 19, 2009 | 6.9 | 26 | NO | YES |
CVE-2022-23743HIGH Check Point ZoneAlarm before version 15.8.200.19118 allows a local actor to escalate privileges during the upgrade process. In addition, weak permissions in the ProgramData\CheckPo | May 11, 2022 | 7.8 | 25 | NO | NO |
CVE-2018-8790HIGH Check Point ZoneAlarm version 15.3.064.17729 and below expose a WCF service that can allow a local low privileged user to execute arbitrary code as SYSTEM. | Mar 1, 2019 | 7.8 | 25 | NO | NO |
CVE-2008-7025MEDIUM TrueVector in Check Point ZoneAlarm 8.0.020.000, with vsmon.exe running, allows remote HTTP proxies to cause a denial of service (crash) and disable the HIDS module via a crafted r | Aug 21, 2009 | 4.3 | 21 | NO | YES |
CVE-2007-2730HIGH Check Point ZoneAlarm Pro before 6.5.737.000 does not properly test for equivalence of process identifiers for certain Microsoft Windows API functions in the NT kernel 5.0 and grea | May 16, 2007 | 7.2 | 21 | NO | NO |
CVE-2020-6023HIGH Check Point ZoneAlarm before version 15.8.139.18543 allows a local actor to escalate privileges while restoring files in Anti-Ransomware. | Oct 27, 2020 | 7.8 | 20 | NO | NO |
CVE-2020-6022MEDIUM Check Point ZoneAlarm before version 15.8.139.18543 allows a local actor to delete arbitrary files while restoring files in Anti-Ransomware. | Oct 27, 2020 | 5.5 | 20 | NO | NO |
CVE-2019-8455HIGH A hard-link created from the log file of Check Point ZoneAlarm up to 15.4.062 to any file on the system will get its permission changed so that all users can access that linked fil | Apr 17, 2019 | 7.1 | 18 | NO | NO |
Exploit Exposure
Signals from CVEs in this product scope (14 CVEs).
CISA KEV
0 CVEs
0.0% of CVEs· Bottom 1%
Metasploit
0 CVEs
0.0% of CVEs· Bottom 1%
Nuclei
0 CVEs
0.0% of CVEs· Bottom 1%
ExploitDB
3 CVEs
21.4% of CVEs· 90th percentile
Social Chatter
Signals from CVEs in this product scope (14 CVEs).
Media Mentions
Signals from CVEs in this product scope (14 CVEs).
Top CNAs Publishing CVEs For Zonealarm
Top CWEs
Versions
| Version | CVE Count | Avg CVSS | Avg EPSS | KEV | Exploits |
|---|---|---|---|---|---|
| 8.0.020.000 | 2 | 5.6 | 1.5% | 0 | 2 |
| 7.0.483.000 | 1 | 6.9 | 1.1% | 0 | 1 |
| 6.1.744.001 | 1 | 7.2 | 0.4% | 0 | 0 |
| 5.0.63.0 | 1 | 7.2 | 0.4% | 0 | 0 |