Check Point Security Gateway Vulnerability
Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.
CVSS Score
9.8
CRITICAL
Published
08 Jun 2026 00:00
Modified
N/A
Vendor
Check Point
Product
Security Gateway
Source
CIRCL
Affected Versions
Fix
Vendor Patch / Mitigation Available
Weaknesses (CWE)
CWE-287
Affected Systems
Check Point
Security Gateway
Check Point
SmartConsole
Security Gateway
External Links
KEV Status
Known Exploited Vulnerability