File Manipulation Vulnerability in Harmony SASE Windows Client by Check Point
CVE-2025-9142

7.5HIGH

Key Information:

Vendor

Checkpoint

Vendor
CVE Published:
14 January 2026

What is CVE-2025-9142?

A local user has the potential to exploit a vulnerability in the Harmony SASE Windows Client, allowing them to write or delete files outside the designated certificate working directory. This misconfiguration may lead to unauthorized file access and manipulation, posing risks to system integrity and data security. Users should ensure timely updates and follow security best practices to mitigate potential attacks related to this flaw.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.

Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.

Affected Version(s)

Hramony SASE Check Point Harmony SASE Windows Agent versions prior to 12.2

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Local
Attack Complexity:
High
Privileges Required:
Low
User Interaction:
Required
Scope:
Changed

Timeline

  • Vulnerability published

  • Vulnerability Reserved

.