securityonline.info 7/29/2026, 8:13:40 AM · external

Check Point SmartConsole Authentication Bypass CVE-2026-16232 Exploited as Zero-Day, PoC and Details Public

Check Point SmartConsole Authentication Bypass CVE-2026-16232 Exploited as Zero-Day, PoC and Details Public
Developing story vulnerability 22 articles tracked
Check Point SmartConsole authentication bypass flaw (CVE-2026-16232) exploited in the wild
CyberSIXT Evidence Panel
Primary Source rapid7.com
CISA KEV Listed in KEV
Patch Patch Available

A critical vulnerability, CVE-2026-16232, allows unauthenticated attackers to bypass authentication in Check Point's SmartConsole, gaining full administrator access. The flaw, which has a CVSS score of 9.1, affects several versions of the Check Point Quantum Security Management product and is actively exploited in the wild. Attackers exploit a broken trust boundary in the login process, leading to unauthorized admin access.

Check Point has released patches for certain versions, and users are advised to restrict access to management servers and monitor audit logs for suspicious activity.

View Primary Source Via securityonline.info

Article by CyberSIXT

Timeline Coverage

Swipe to explore timeline