SPOJENO AI EPSS 0.01
New Check Point flaw lets hackers execute code with root privileges
Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code with root privileges on management systems. [...]
Check Point US NL CA IT FR
CVE v události 1
| CVE | hodnocení | KEV | EPSS |
|---|---|---|---|
| CVE-2026-91843 | 9.8 3.1 · checkpoint | – | 0.01 |
Hodnocení z katalogů, všechna, se stupnicí CVSS a vydavatelem. Rozpad vektoru je na stránce CVE.
Dalších 4 CVE zmiňuje jen text zpravodajského článku (CVE-2026-16232, CVE-2026-50751, CVE-2026-85102, CVE-2026-85103). Nejsou to identifikátory téhle události, proto nejsou v tabulce ani v odznacích.
Jak se o tom psalo 5
-
· BleepingComputer US nadpis události
New Check Point flaw lets hackers execute code with root privileges
Check Point Software has released security updates to address a critical vulnerability that can let attackers execute code with root privileges on management systems. [...]
-
· NCSC-NL NL
NCSC-2026-0384 [1.00] [M/H] Kwetsbaarheid verholpen in Check Point's Security Management and Log Servers
Check Point heeft een kwetsbaarheid verholpen in Check Point's Security Management and Log Servers. De kwetsbaarheid betreft een stack overflow die optreedt tijdens het ongeauthenticeerde inlogproces. Een aanvaller kan deze kwetsbaarheid op afstand misbruiken om willekeurige code uit te voeren met rootrechten. Hierdoor kan de aanvaller authenticatie omzeilen en volledige controle over het systeem verkrijgen. Voor exploitatie is geen voorafgaande authenticatie vereist.
-
· Cyber Centre Kanada CA
Check Point security advisory (AV26-933)
Serial number: AV26-933Date: September 17, 2026 As of September 16, 2026, Check Point is affected by a vulnerability in the following products: Security Management Server, Multi-Domain Security Management Server, Log Server and Multi-Domain Log Server R81.20 with Jumbo Hotfix Take 166 and prior R82 with Jumbo Hotfix Take 126 and prior R82.10 with Jumbo Hotfix Take 44 and prior R82.20 The Cyber Centre encourages users and administrators to review the provided web links and apply any necessary…
-
· CSIRT Itálie (ACN) IT
Risolta vulnerabilità in prodotti Check Point
Aggiornamenti di sicurezza Check Point risolvono una vulnerabilità con gravità “critica” presente nel processo di login ai Security Management Server e Log Server. Tale vulnerabilità, qualora sfruttata, potrebbe consentire ad un utente malintenzionato remoto di eseguire codice arbitrario sui sistemi interessati.
-
· CERT-FR – avis FR
Vulnérabilité dans les produits Check Point (17 septembre 2026)
Une vulnérabilité a été découverte dans les produits Check Point. Elle permet à un attaquant de provoquer une exécution de code arbitraire à distance. Checkpoint recommande de rechercher, via la *SmartConsole*, le motif **"Administrator failed to log in: Username too long"** dans les journaux...