Article

    Cyber News / Article / Multiple Vulnerabilities in Check Point Products Could Allow for Authentication Bypass

    Multiple Vulnerabilities in Check Point Products Could Allow for Authentication Bypass
    -2026-06-09

    Multiple Vulnerabilities in Check Point Products Could Allow for Authentication Bypass

    Multiple vulnerabilities have been discovered in Check Point products the most severe of which could allow for authentication bypass.

    Successful exploitation of the most severe of these vulnerabilities could allow an unauthenticated remote attacker to bypass authentication and gain unauthorized access to network resources. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

    Checkpoint reports CVE-2026-50751 has been exploited in a limited number of cases in the wild. Additionally, they have attributed one case of exploitation to the Qilin ransomware operation.

    Multiple vulnerabilities have been discovered in Check Point products the most severe of which could allow for authentication bypass. Details of these vulnerabilities are as follows:

    Tactic:Initial Access(TA0001):

    Technique:Exploit Public-Facing Application(T1190):

    Successful exploitation of the most severe of these vulnerabilities could allow an unauthenticated remote attacker to bypass authentication and gain unauthorized access to network resources. Depending on the privileges associated with the user an attacker could then install programs; view, change, or delete data; or create new accounts with full user rights. Users whose accounts are configured to have fewer user rights on the system could be less impacted than those who operate with administrative user rights.

    We recommend the following actions be taken:

    Copyright©2026 Center for Internet Security®

    Original source