> Source: [sk179609](https://support.checkpoint.com/results/sk/sk179609)

# sk179609 - Check Point Response to CVE-2022-23744 - Use of unprotected registry change to disable Endpoint protection

| Property | Value |
|----------|-------|
| Solution ID | sk179609 |
| Date Created | 2022-06-27 |
| Last Modified | 2025-02-09 |
| Technical Level | General |
| OS | Windows |
| Platform | Intel/PC |

## Symptoms

- Check Point Endpoint Security Client before version E86.50 fails to protect against specific registry change, allowing a local administrator to disable endpoint protection.  

This issue was discovered and responsibly disclosed by Erwin Chan and received ID [CVE-2022-23744](https://www.cve.org/CVERecord?id=CVE-2022-23744).

## Solution

This problem was fixed. The fix is included starting from:  

* **[Enterprise Endpoint Security E86.50 Windows Clients](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk179044)**

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
