checkpoint Vulnerabilities and Affected Products
Vulnerabilities associated with Multi-Domain Security Management.
Products
Clear product- Quantum Security Gateway8 vulnerabilities
- Quantum Security Management4 vulnerabilities
- Check Point Mobile Access3 vulnerabilities
- Check Point SmartConsole2 vulnerabilities
- Identity Agent2 vulnerabilities
- Multi-Domain Security Management2 vulnerabilities
- Spark Firewalls2 vulnerabilities
- Check Point Harmony SASE1 vulnerability
- Check Point Management Log Server1 vulnerability
- Check Point Quantum Gateway, Spark Gateway and CloudGuard Network1 vulnerability
- cloudguard_network1 vulnerability
- clusterxl1 vulnerability
- ClusterXL, Multi-Domain Security Management, Quantum Appliances, Quantum Maestro, Quantum Scalable Chassis, Quantum Security Gateways, Quantum Security Management1 vulnerability
- gaia_portal1 vulnerability
- Harmony Endpoint Security Client for Windows1 vulnerability
- Harmony Endpoint.1 vulnerability
- harmony_endpoint1 vulnerability
- Hramony SASE1 vulnerability
- Identity Awareness1 vulnerability
- identity_agent1 vulnerability
- Multi-Domain Security Management Server1 vulnerability
- Multi-Domain Security Management, Quantum Security Management1 vulnerability
- multi-domain_management1 vulnerability
- quantum_appliances1 vulnerability
- quantum_maestro1 vulnerability
| Vulnerability | Title and context | CVSS | EPSS | PoCs | Signals | STIX action |
|---|---|---|---|---|---|---|
CVE-2026-62144CRITICAL | Management Authentication Bypass and Privilege EscalationAn authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management Server. Successful exploitation may also allow command execution on managed Security Gateways. Exploitation requires network access to the Management Server without firewall protection or a configuration that does not restrict Trusted Clients. CWE-287Jul 22, 2026 | CVSS9.3v4.0 | EPSS20.6% | PoCs0 | SignalsNot listed in CISA KEVNo known ransomware useNo Nuclei templates | STIX |
CVE-2026-16232CRITICAL | Authentication Bypass in the SmartConsole Login Process Using an Application TokenAn authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. Remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients. Check Point is aware that this… | CVSS9.3v4.0 | EPSS73.3% | PoCs2 | SignalsListed in CISA KEVNo known ransomware use1 Nuclei template | STIX |