CVE-2025-9142Patch

LOWCVSS 7.5 · HIGH

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

A local user can trigger Harmony SASE Windows client to write or delete files outside the intended certificate working directory.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-22

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 4 signals
  • Disclosure: 1 classified signal
  • General: 1 classified signal
  • Peaked 2d ago at 3 mentions (2026-01-28); latest day: 1
  • 5 total mentions across 3 days

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-01-28: 3Mentions · 2026-01-29: 1Mentions · 2026-02-05: 1Patch / Workaround · 2026-01-28: 1Patch / Workaround · 2026-01-29: 1Patch / Workaround · 2026-02-05: 1Technical Details · 2026-01-28: 2Technical Details · 2026-01-29: 1Technical Details · 2026-02-05: 101-2801-2902-05
Signal classification3 categories
Patch
360.0%
Disclosure
120.0%
General
120.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-01-283
Disclosure1General1Patch1
2026-01-291
Patch1
2026-02-051
Patch1
Full discourse5 posts
  • Nicolas Krassas@Dinosn
    General

    Advisory - Check Point Harmony Local Privilege Escalation (CVE-2025-9142) https://www.reddit.com/r/blueteamsec/comments/1qoqhyf/advisory_check_point_harmony_local_privilege/

    Post summary

    The Reddit post is titled as an advisory for CVE-2025-9142 but provides no technical details, PoC, exploit code, patch information, or evidence of active exploitation.

    00002941
    151.4K followersView on X
  • iototsecnews@iototsecnews
    Patch

    Check Point Harmony SASE の脆弱性 CVE-2025-9142 が FIX:SYSTEM 権限昇格の恐れ https://iototsecnews.jp/2026/01/28/check-point-harmony-sase-windows-client-vulnerability-enables-privilege-escalation/ Check Point が提供するクラウドネイティブな Secure Access Service Edge (SASE) ソリューション、Harmony SASE の Windows 用クライアントにおいて、SYSTEM 権限への昇格が可能な深刻な脆弱性 CVE-2025-9142 が報告されました。 この脆弱性は、もともと Perimeter 81 として知られていたコンポーネントに起因するもので、ローカルの低権限ユーザーであっても、特定の細工を施すことで、最終的に Windows システムにおける最高権限 (SYSTEM) を奪取できるというものです。 この脆弱性は、バージョン 12.2 未満の、すべての Harmony SASE Windows クライアントに影響を及ぼします。修正パッチは、2025年11月18日の時点で提供されており、2026年1月14日には正式な CVE 情報が公開されました。ご利用のチームは、ご注意ください。 #CheckPoint #CVE20259142 #HarmonySASE #Vulnerability

    Post summary

    CVE-2025-9142 enables local users to gain SYSTEM privileges on Check Point Harmony SASE Windows clients below version 12.2; a patch was released on November 18, 2025.

    01000156
    483 followersView on X
  • The Daily Tech Feed@dailytechonx
    Patch

    Critical flaw in Check Point's Harmony SASE Windows client (CVE-2025-9142) allows privilege escalation. Upgrade to version 12.2+ immediately! Link: https://thedailytechfeed.com/check-points-harmony-sase-windows-client-vulnerability-allows-privilege-escalation-urgent-update-advised/ #Security #CheckPoint #Vulnerability #Update #Windows #Client #Flaw #Escalation #Upgrade #Patch #Software #Protection #Threat #Risk #Exploit #Cyber #Technology #Network #IT #Defense

    Post summary

    A security advisory warns of a privilege escalation vulnerability (CVE-2025-9142) in Check Point Harmony SASE Windows client and recommends an immediate upgrade to version 12.2+ to remediate the issue.

    0001089
    239 followersView on X
  • ThreatCluster@threatcluster
    Disclosure

    Check Point Harmony SASE Windows client hit by critical privilege escalation bug CVE-2025-9142, in Perimeter81 service before v12.2, lets local users alter files and gain SYSTEM-level control. #Vulnerability https://threatcluster.io/cluster/check-point-harmony-sase-windows-client-vulnerability-allows-c3cd4729

    Post summary

    The post announces a critical privilege escalation vulnerability (CVE-2025-9142) affecting Check Point Harmony SASE Windows client, allowing local users to modify files and gain SYSTEM-level control.

    0000044
    80 followersView on X
  • Autumn Good@autumn_good_35
    Patch

    『The domain was returned to Check Point to mitigate the risk during the time between the vulnerability being reported and the client being patched.』 Advisory - Check Point Harmony Local Privilege Escalation (CVE-2025-9142) https://blog.amberwolf.com/blog/2026/january/advisory---check-point-harmony-local-privilege-escalation-cve-2025-9142/

    Post summary

    A Check Point Harmony local privilege escalation vulnerability (CVE‑2025‑9142) was reported; the domain was returned to the vendor to reduce risk until a client patch was applied.

    00000403
    6.7K followersView on X

Explore more