Emergent ThreatCVE-2026-16232:Critical Check Point SmartConsole Authentication Bypass Exploited in the WildBlog ↗
Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades. A Security fix that mitigates this vulnerability is available.
CVSS Details
- CVSS 3.1 Base Score: 8.6
- CVSS 3.1 Vector: (CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:N/A:N)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Check Point Gaia | — | Upgrade to supported version Check Point Gaia. | Mar 6, 2025 | May 27, 2024 |
| Checkpoint | — | Upgrade to a remediated version of Check Point Security Gateway Gaia software and implement recommended additional steps | May 29, 2024 | May 28, 2024 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub