All CVEs
Vulnerability intelligence

CVE-2026-50752

checkpoint Quantum Security Gateway CWE-295

A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.

CVSS Score
7.4
High
EPSS — Exploit Probability
5.0%
Riskier than 92% of all CVEs · checked 2026-09-08
Exploitation
Not in CISA KEV
KEV does not include every exploited vulnerability
Remediation
unknown
Check vendor advisories
NVD entry PoC / advisory

4 articles across 4 outlets · first covered Jun 8, 2026 · latest Jun 9, 2026

Associated threat actors

Coverage timeline

Related CVEs — checkpoint