The record
Written from the 1 report below. Nothing here is unsourced.
- Check Point has released urgent security updates to fix multiple high-severity vulnerabilities in its Security Management, SmartConsole, and Gaia Portal products, affecting versions from R77.30 through R82.
- The most critical, CVE-2026-62144, is an authentication bypass flaw (CVSS 9.1) that allows an unauthenticated remote attacker to execute administrative commands on management servers.
- CISA has added it to its Known Exploited Vulnerabilities catalog, confirming active exploitation in the wild.
- The company's July 22 Jumbo hotfix addresses the issue, and the firm also recommends restricting management access to trusted IP addresses as an interim mitigation.
- Because Check Point products sit at the network perimeter for thousands of enterprises, unpatched devices pose a severe risk of full administrative compromise.
- Organizations should prioritize patching and verify that management interfaces are not exposed to untrusted networks.
What to watch next
- Apply Check Point July 22 Jumbo hotfix immediately to all management servers.
- Restrict management interface access to trusted IPs/subnets via firewall rules.
- Monitor CISA KEV catalog for additions of related Check Point CVEs.
Why it matters3
Who is affected first and what likely follows, with a direction and a horizon. Extracted from the reports, never invented.
- Check Point SmartConsole/Security Management/Gaia Portal users patch required· immediate
- Unpatched Check Point management infrastructure remote admin command execution· immediate
- Security operations teams emergency remediation workload· days
Coverage1
1 report
English national1
Filed from India ×1, United States ×1
Named Federal Civilian Executive Branch · Check Point · Lotem Finkelstein · U.S. Cybersecurity and Infrastructure Security Agency
The 1 report is listed beside the record.
Ask this story
Answers cite the reports above, or say they can't.
