Threat Advisory

Check Point Security Management Server Suffers Authentication Bypass Flaw

Threat: Vulnerability
Targeted Region: Global
Targeted Sector: Technology & IT
Criticality: Critical
[subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

CVE-2026-18574 with a CVSS score of 9.3 is a Check Point authentication bypass affecting its Security Management and Multi-Domain Security Management servers tracked as CVE-2026-18574. The flaw carries a CVSS score of 9.3, and Check Point found the issue internally reporting no active exploits. An unauthenticated attacker who reaches the flaw could execute arbitrary commands on the Security Management Server resulting in full compromise of the system which sits at the top of the trust hierarchy controlling policy across every connected gateway. A compromised Management Server could let an attacker rewrite firewall rules alter administrator permissions or disable logging across an entire deployment. Check Point has patched similar Management-tier authentication bypasses before some of which attackers later exploited in the wild making fast patching worthwhile even without confirmed exploitation this time affecting checkpoint Security Management Server versions and patch.

RECOMMENDATION:

We recommend you to update Check Point Security Management Server to given version link: https://support.checkpoint.com/results/sk/sk185222[/subscribe_to_unlock_form]

EXECUTIVE SUMMARY:

CVE-2026-18574 with a CVSS score of 9.3 is a Check Point authentication bypass affecting its Security Management and Multi-Domain Security Management servers tracked as CVE-2026-18574. The flaw carries a CVSS score of 9.3, and Check Point found the issue internally reporting no active exploits. An unauthenticated attacker who reaches the flaw could execute arbitrary commands on the Security Management Server resulting in full compromise of the system which sits at the top of the trust hierarchy controlling policy across every connected gateway. A compromised Management Server could let an attacker rewrite firewall rules alter administrator permissions or disable logging across an entire deployment. Check Point has patched similar Management-tier authentication bypasses before some of which attackers later exploited in the wild making fast patching worthwhile even without confirmed exploitation this time affecting checkpoint Security Management Server versions and patch.

RECOMMENDATION:

We recommend you to update Check Point Security Management Server to given version link: https://support.checkpoint.com/results/sk/sk185222[emaillocker id="1283"]

REFERENCES:

The following reports contain further technical details:

[/emaillocker]
crossmenu