CVE-2026-10847

Local Privilege Escalation vulnerability in Check Point Identity Agent Full for Windows OS

Severity
High 7.8
CVSS 3.1
Exploited
Not listed
EPSS
0.001
2.4th percentile
Discovered by
Not disclosed
Published
Jun 11, 2026
Assigned by checkpoint

Description

A local privilege escalation vulnerability exists in Check Point Identity Agent Full for Windows OS. An authenticated local user may be able to execute arbitrary code with SYSTEM privileges due to improper handling of executable resolution during the log collection process. Successful exploitation could allow an attacker to gain elevated privileges on the affected Windows endpoint.

Weakness: CWE-427

Affected products

Vendor Product Category Matched by
Check Point Identity Agent Identity / IAM / MFA cna-assigner
Vendor-reported products (1)
  • checkpoint · Identity Agent

Something wrong here?