HIGHVulnerability
Verified
Global
CISA KEV: Check Point Multiple Products — Check Point Multiple Products Improper Certificate Validation Vulnerability
·Source: CISA KEV
Updated:
Executive Summary
Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
Analysis
Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to execute arbitrary code on the Gateway. Added to CISA Known Exploited Vulnerabilities catalog on 2026-09-22. Remediation due: 2026-09-25.