EIP-2026-100996

PRE-CVE

Check Point Software Firewall-1 3.0/1.4.0/1.4.1 - Spoofed Source Denial of Service

Title source: legacy
STIX 2.1

Exploitation Summary

EIP tracks 1 public exploit for EIP-2026-100996. PoCs published by lore.

AI-analyzed exploit summary This exploit sends spoofed UDP packets with the same source and destination IP to trigger a denial-of-service condition in CheckPoint Firewall-1. It constructs raw IP/UDP packets and sends them in a loop to crash the firewall.

Description

Check Point Software Firewall-1 3.0/1.4.0/1.4.1 - Spoofed Source Denial of Service

Exploits (1)

exploitdb WORKING POC VERIFIED
by lore · cdoshardware
https://www.exploit-db.com/exploits/20050

This exploit sends spoofed UDP packets with the same source and destination IP to trigger a denial-of-service condition in CheckPoint Firewall-1. It constructs raw IP/UDP packets and sends them in a loop to crash the firewall.

Classification
Working Poc 90%
Attack Type
Dos
Complexity
Trivial
Reliability
Reliable
Target: CheckPoint Firewall-1 (versions 3.0, 4.0, 4.1)
No auth needed
Prerequisites: raw socket permissions · network access to the target
devstral-2 · analyzed Feb 16, 2026 Full analysis →

Details

Status pre_cve
Tracked Since Feb 18, 2026