Find notable cyber news and cases, enriched with sources, timelines, and signals.

Check Point Security Gateways and Security Management Server VPN certificate flaws (multiple vulnerabilities)

Vulnerability
First reported
Last updated
Happening score
H score 53
1 unique sources, 1 articles

Summary

Hide ▲

Check Point Security Gateways and Security Management Server are affected by two critical VPN certificate flaws, CVE-2026-85102 and CVE-2026-85103, that can let an unauthenticated remote attacker execute code under specific conditions. Check Point disclosed the issues on September 9 and began delivering fixes the same day. The company says it has no indication of exploitation.

Related Happenings

Check Point VPN certificate mitigation guidance

Advisory/Mitigation
H score53 First: 10.09.2026 14:45 Last: 10.09.2026 14:45 Sources 1

How related: Check Point gave customers two routes to the fix. The first is Check Point Live Patch. The company says customers using it are protected automatically as the rollout begins, which started on September 9.

About this happening: Check Point directed affected customers to Live Patch or the latest Jumbo Hotfix for its VPN certificate flaws, with rollout beginning on September 9. The guidance...

SmartConsole actively exploited authentication bypass (CVE-2026-16232)

Vulnerability
H score43 First: 23.07.2026 11:13 Last: 23.07.2026 11:13 Sources 1

About this happening: Check Point addressed CVE-2026-16232, a zero-day authentication bypass in SmartConsole affecting Security Management and Multi-Domain Management products....

CISA KEV catalog addition for SonicWall SMA 1000 flaws

Public Sector Action
H score34 First: 15.07.2026 08:30 Last: 15.07.2026 08:30 Sources 1

About this happening: CISA added CVE-2026-15409 and CVE-2026-15410 affecting SonicWall SMA 1000 appliances to the Known Exploited Vulnerabilities (KEV) catalog on July 14, 2026,...

CISA KEV order for FCEB remediation of CVE-2026-50751

Public Sector Action
H score43 First: 09.06.2026 11:18 Last: 09.06.2026 11:18 Sources 1

About this happening: CISA ordered Federal Civilian Executive Branch agencies to secure CVE-2026-50751, forcing a rapid federal response to a flaw that can let attackers bypass authenticati...

Check Point VPN CVE-2026-50751 targeted exploitation wave

Exploitation Wave
H score47 First: 08.06.2026 17:17 Last: 08.06.2026 17:17 Sources 1

About this happening: CVE-2026-50751 is an active exploitation wave against Check Point Remote Access VPN and Mobile Access deployments that use deprecated IKEv1. The flaw is an a...

Timeline

  1. 10.09.2026 14:45 2 articles · 4h ago

    Check Point discloses two critical VPN certificate flaws

    Initial Disclosure

    Check Point disclosed two critical VPN certificate vulnerabilities affecting Security Gateways and Security Management Server, assigning CVE-2026-85102 and CVE-2026-85103 CVSS scores of 9.8. The company said it found both issues itself and had no indication that either flaw had been used in an attack, even though both could let an unauthenticated remote attacker run code under specific conditions.

    Show sources
  2. 10.09.2026 14:45 1 articles · 4h ago

    Check Point begins delivering fixes for VPN certificate flaws

    Mitigation Patch Update

    Check Point began delivering fixes for the VPN certificate vulnerabilities the same day and told customers to use Check Point Live Patch or the latest Jumbo Hotfix for the deployed version. The company said Live Patch rollout started on September 9 and that it could be installed on top of any Jumbo Hotfix level in R81.20, R82.00 and R82.10.

    Show sources