CVE-2024-24915: SmartConsole Sensitive Credential Exposure via Memory Dump

Published Jun 29, 2025
·
Updated

Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.

Affected Software

39 affected components
All of the following
Any of the following
Checkpoint Smartconsole=r81.10-build400
Checkpoint Smartconsole=r81.10-build402
Checkpoint Smartconsole=r81.10-build404
Checkpoint Smartconsole=r81.10-build406
Checkpoint Smartconsole=r81.10-build407
Checkpoint Smartconsole=r81.10-build409
Checkpoint Smartconsole=r81.10-build410
Checkpoint Smartconsole=r81.10-build412
Checkpoint Smartconsole=r81.10-build413
Checkpoint Smartconsole=r81.10-build414
Checkpoint Smartconsole=r81.10-build416
Checkpoint Smartconsole=r81.10-build417
Checkpoint Smartconsole=r81.10-build418
Checkpoint Smartconsole=r81.10-build420
Checkpoint Smartconsole=r81.10-build423
Checkpoint Smartconsole=r81.10-build424
Checkpoint Smartconsole=r81.10-build425
Checkpoint Smartconsole=r81.10-build426
Checkpoint Smartconsole=r81.10-build427
Checkpoint Smartconsole=r81.10-build428
Checkpoint Smartconsole=r81.10-build429
Checkpoint Smartconsole=r81.20-build640
Checkpoint Smartconsole=r81.20-build641
Checkpoint Smartconsole=r81.20-build645
Checkpoint Smartconsole=r81.20-build646
Checkpoint Smartconsole=r81.20-build649
Checkpoint Smartconsole=r81.20-build651
Checkpoint Smartconsole=r81.20-build653
Checkpoint Smartconsole=r81.20-build654
Checkpoint Smartconsole=r81.20-build655
Checkpoint Smartconsole=r81.20-build656
Checkpoint Smartconsole=r81.20-build658
Checkpoint Smartconsole=r81.20-build659
Checkpoint Smartconsole=r81.20-build660
Checkpoint Smartconsole=r81.20-build661
Checkpoint Smartconsole=r81.20-build663
Checkpoint Smartconsole=r82-build1051
Checkpoint Smartconsole=r82-build1053
Microsoft Windows

Event History

Jun 29, 2025
CVE Published
via MITRE·12:02 PM
Data Sourced
via MITRE·12:02 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Free Weekly Intel

Don't miss critical vulnerabilities

Join thousands of security professionals who receive our weekly digest of trending CVEs, zero-days, and exploited vulnerabilities.

No spam. Unsubscribe anytime.

Frequently Asked Questions

1

What is the severity of CVE-2024-24915?

The severity of CVE-2024-24915 is considered high due to the potential exposure of credentials in memory.

2

How do I fix CVE-2024-24915?

To fix CVE-2024-24915, update to the latest available build of Check Point SmartConsole that addresses the vulnerability.

3

Who is affected by CVE-2024-24915?

CVE-2024-24915 affects users with Administrator permissions on specific builds of Check Point SmartConsole.

4

What can happen if CVE-2024-24915 is exploited?

Exploitation of CVE-2024-24915 can lead to unauthorized access to user credentials stored in memory.

5

Is there a patch available for CVE-2024-24915?

Yes, there is a patch available that users should apply to protect against CVE-2024-24915.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203
CVE-2024-24915 - SmartConsole Sensitive Credential Exposure via Memory Dump - SecAlerts