Check Point Security Management Products Patched for Critical Vulnerabilities (advisories.ncsc.nl)
0xBASE INTEL BRIEF
- Unauthenticated attackers can steal administrative tokens in SmartConsole.
- Privilege escalation in Gaia Portal allows read-only users to gain root access.
- CVE-2026-16232 actively exploited against internet-facing misconfigured systems.
"Check Point has fixed vulnerabilities in SmartConsole, Gaia Portal, Security Management, and Multi-Domain Security Management. These allow authentication bypass and privilege escalation. One vulnerability (CVE-2026-16232) is under active exploitation, but only for misconfigured internet-exposed systems. Administrators should patch immediately and review access controls."
no comments yet.