HIGHVulnerability
Verified
Global
CISA KEV: Check Point Security Gateway — Check Point Security Gateway Improper Authentication Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.
Analysis
Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password. Added to CISA Known Exploited Vulnerabilities catalog on 2026-06-08. Remediation due: 2026-06-11.