SEPTEMBER 17, 2026
Live Feed
Back to database
Case File

CVE-2026-62144

CRITICAL · CVSS 9.1 EPSS 20.62% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-07-22 · Last synced 2026-08-21

CyberRota Analysis

AI-Generated

An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management enables unauthenticated remote attackers to execute administrative commands on the Management Server, potentially extending command execution to managed Security Gateways. This critical flaw poses a significant risk to organizations using these products, particularly if their Management Server is accessible over the network without adequate firewall protections or restrictive configurations. Security teams and IT administrators should prioritize immediate remediation to mitigate the risk of unauthorized access and control over their security infrastructure.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-62144
Severity
CRITICAL
CVSS
9.1
EPSS
20.62%

Original NVD Description

An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management Server. Successful exploitation may also allow command execution on managed Security Gateways. Exploitation requires network access to the Management Server without firewall protection or a configuration that does not restrict Trusted Clients.