Check Point Security Gateways and Security Management Server VPN certificate flaws (multiple vulnerabilities)
Vulnerability
Summary
Hide ▲
Show ▼
Check Point Security Gateways and Security Management Server are affected by two critical VPN certificate flaws, CVE-2026-85102 and CVE-2026-85103, that can let an unauthenticated remote attacker execute code under specific conditions. Check Point disclosed the issues on September 9 and began delivering fixes the same day. The company says it has no indication of exploitation.
Related Happenings
Check Point VPN certificate mitigation guidance
Advisory/Mitigation
H score53
First: 10.09.2026 14:45
Last: 10.09.2026 14:45
Sources 1
How related:
Check Point gave customers two routes to the fix. The first is Check Point Live Patch. The company says customers using it are protected automatically as the rollout begins, which started on September 9.
About this happening:
Check Point directed affected customers to Live Patch or the latest Jumbo Hotfix for its VPN certificate flaws, with rollout beginning on September 9. The guidance...
Check Point VPN certificate mitigation guidance
Advisory/MitigationHow related: Check Point gave customers two routes to the fix. The first is Check Point Live Patch. The company says customers using it are protected automatically as the rollout begins, which started on September 9.
About this happening: Check Point directed affected customers to Live Patch or the latest Jumbo Hotfix for its VPN certificate flaws, with rollout beginning on September 9. The guidance...
SmartConsole actively exploited authentication bypass (CVE-2026-16232)
Vulnerability
H score43
First: 23.07.2026 11:13
Last: 23.07.2026 11:13
Sources 1
About this happening:
Check Point addressed CVE-2026-16232, a zero-day authentication bypass in SmartConsole affecting Security Management and Multi-Domain Management products....
SmartConsole actively exploited authentication bypass (CVE-2026-16232)
VulnerabilityAbout this happening: Check Point addressed CVE-2026-16232, a zero-day authentication bypass in SmartConsole affecting Security Management and Multi-Domain Management products....
CISA KEV catalog addition for SonicWall SMA 1000 flaws
Public Sector Action
H score34
First: 15.07.2026 08:30
Last: 15.07.2026 08:30
Sources 1
About this happening:
CISA added CVE-2026-15409 and CVE-2026-15410 affecting SonicWall SMA 1000 appliances to the Known Exploited Vulnerabilities (KEV) catalog on July 14, 2026,...
CISA KEV catalog addition for SonicWall SMA 1000 flaws
Public Sector ActionAbout this happening: CISA added CVE-2026-15409 and CVE-2026-15410 affecting SonicWall SMA 1000 appliances to the Known Exploited Vulnerabilities (KEV) catalog on July 14, 2026,...
CISA KEV order for FCEB remediation of CVE-2026-50751
Public Sector Action
H score43
First: 09.06.2026 11:18
Last: 09.06.2026 11:18
Sources 1
About this happening:
CISA ordered Federal Civilian Executive Branch agencies to secure CVE-2026-50751, forcing a rapid federal response to a flaw that can let attackers bypass authenticati...
CISA KEV order for FCEB remediation of CVE-2026-50751
Public Sector ActionAbout this happening: CISA ordered Federal Civilian Executive Branch agencies to secure CVE-2026-50751, forcing a rapid federal response to a flaw that can let attackers bypass authenticati...
Check Point VPN CVE-2026-50751 targeted exploitation wave
Exploitation Wave
H score47
First: 08.06.2026 17:17
Last: 08.06.2026 17:17
Sources 1
About this happening:
CVE-2026-50751 is an active exploitation wave against Check Point Remote Access VPN and Mobile Access deployments that use deprecated IKEv1. The flaw is an a...
Check Point VPN CVE-2026-50751 targeted exploitation wave
Exploitation WaveAbout this happening: CVE-2026-50751 is an active exploitation wave against Check Point Remote Access VPN and Mobile Access deployments that use deprecated IKEv1. The flaw is an a...
Timeline
-
10.09.2026 14:45 2 articles · 4h ago
Check Point discloses two critical VPN certificate flaws
Initial DisclosureCheck Point disclosed two critical VPN certificate vulnerabilities affecting Security Gateways and Security Management Server, assigning CVE-2026-85102 and CVE-2026-85103 CVSS scores of 9.8. The company said it found both issues itself and had no indication that either flaw had been used in an attack, even though both could let an unauthenticated remote attacker run code under specific conditions.
Show sources
- Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE — thehackernews.com — 10.09.2026 14:45
- Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE — thehackernews.com — 10.09.2026 14:45
-
10.09.2026 14:45 1 articles · 4h ago
Check Point begins delivering fixes for VPN certificate flaws
Mitigation Patch UpdateCheck Point began delivering fixes for the VPN certificate vulnerabilities the same day and told customers to use Check Point Live Patch or the latest Jumbo Hotfix for the deployed version. The company said Live Patch rollout started on September 9 and that it could be installed on top of any Jumbo Hotfix level in R81.20, R82.00 and R82.10.
Show sources
- Check Point Discloses Two 9.8-Rated VPN Certificate Flaws Enabling Unauthenticated RCE — thehackernews.com — 10.09.2026 14:45