CVE-2024-24915: SmartConsole Sensitive Credential Exposure via Memory Dump
Published Jun 29, 2025
·Updated
Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.
Affected Software
39 affected components
All of the following
Any of the following
Checkpoint Smartconsole=r81.10-build400
Checkpoint Smartconsole=r81.10-build402
Checkpoint Smartconsole=r81.10-build404
Checkpoint Smartconsole=r81.10-build406
Checkpoint Smartconsole=r81.10-build407
Checkpoint Smartconsole=r81.10-build409
Checkpoint Smartconsole=r81.10-build410
Checkpoint Smartconsole=r81.10-build412
Checkpoint Smartconsole=r81.10-build413
Checkpoint Smartconsole=r81.10-build414
Checkpoint Smartconsole=r81.10-build416
Checkpoint Smartconsole=r81.10-build417
Checkpoint Smartconsole=r81.10-build418
Checkpoint Smartconsole=r81.10-build420
Checkpoint Smartconsole=r81.10-build423
Checkpoint Smartconsole=r81.10-build424
Checkpoint Smartconsole=r81.10-build425
Checkpoint Smartconsole=r81.10-build426
Checkpoint Smartconsole=r81.10-build427
Checkpoint Smartconsole=r81.10-build428
Checkpoint Smartconsole=r81.10-build429
Checkpoint Smartconsole=r81.20-build640
Checkpoint Smartconsole=r81.20-build641
Checkpoint Smartconsole=r81.20-build645
Checkpoint Smartconsole=r81.20-build646
Checkpoint Smartconsole=r81.20-build649
Checkpoint Smartconsole=r81.20-build651
Checkpoint Smartconsole=r81.20-build653
Checkpoint Smartconsole=r81.20-build654
Checkpoint Smartconsole=r81.20-build655
Checkpoint Smartconsole=r81.20-build656
Checkpoint Smartconsole=r81.20-build658
Checkpoint Smartconsole=r81.20-build659
Checkpoint Smartconsole=r81.20-build660
Checkpoint Smartconsole=r81.20-build661
Checkpoint Smartconsole=r81.20-build663
Checkpoint Smartconsole=r82-build1051
Checkpoint Smartconsole=r82-build1053
Microsoft Windows
Event History
Jun 29, 2025
CVE Published
via MITRE·12:02 PM
Data Sourced
via MITRE·12:02 PM
DescriptionSeverityWeakness
Data Sourced
via NVD·12:15 PM
DescriptionSeverityWeaknessAffected Software
Frequently Asked Questions
1
What is the severity of CVE-2024-24915?
The severity of CVE-2024-24915 is considered high due to the potential exposure of credentials in memory.
2
How do I fix CVE-2024-24915?
To fix CVE-2024-24915, update to the latest available build of Check Point SmartConsole that addresses the vulnerability.
3
Who is affected by CVE-2024-24915?
CVE-2024-24915 affects users with Administrator permissions on specific builds of Check Point SmartConsole.
4
What can happen if CVE-2024-24915 is exploited?
Exploitation of CVE-2024-24915 can lead to unauthorized access to user credentials stored in memory.
5
Is there a patch available for CVE-2024-24915?
Yes, there is a patch available that users should apply to protect against CVE-2024-24915.