CVE-2025-8304
Severity CVSS v4.0:
Pending analysis
Type:
CWE-200
Information Leak / Disclosure
Publication date:
22/12/2025
Last modified:
22/12/2025
Description
An authenticated local user can obtain information that allows claiming security policy rules of another user due to sensitive information being accessible in the Windows Registry keys for Check Point Identity Agent running on a Terminal Server.
Impact
Base Score 3.x
6.50
Severity 3.x
MEDIUM



