All CVEs
Vulnerability intelligence

CVE-2026-18574

checkpoint Security Management Server CWE-288

An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) could allow an unauthenticated remote attacker with network access to Management services to execute arbitrary commands on the Security Management Server. Successful exploitation could result in full compromise of the Security Management system. Check Point discovered this issue internally and has no indication of active exploitation.

CVSS Score
9.3
Critical
EPSS — Exploit Probability
1.0%
Riskier than 61% of all CVEs · checked 2026-09-16
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
NVD entry PoC / advisory

1 article across 1 outlet · first covered Aug 3, 2026 · latest Aug 3, 2026

Coverage timeline

Related CVEs — checkpoint