Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

CISA Adds Microsoft SharePoint and Check Point SmartConsole Flaws to Known Exploited Vulnerabilities Catalog


U.S. CISA adds two new vulnerabilities, a critical authentication bypass flaw in Check Point's SmartConsole and a remote code execution bug in Microsoft SharePoint, to its Known Exploited Vulnerabilities catalog, urging organizations to take immediate action to patch these flaws and prevent potential exploitation by malicious actors.

  • The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities to its Known Exploited Vulnerabilities catalog: CVE-2026-16232 in Check Point's SmartConsole and CVE-2026-50522 in Microsoft SharePoint.
  • These vulnerabilities are critical, with the first one allowing unauthenticated remote attackers to gain full administrative access to security management systems.
  • The second vulnerability is a critical remote code execution bug that can steal SharePoint machine keys without authentication or user interaction.
  • CISA has ordered federal agencies to fix these flaws by July 25, 2026, and recommends private organizations review the Known Exploited Vulnerabilities catalog for similar vulnerabilities.
  • Experts advise applying security updates, rotating machine keys, and other potentially exposed credentials to prevent long-term compromise.



  • The U.S. Cybersecurity and Infrastructure Security Agency (CISA) has added two new vulnerabilities, specifically a critical authentication bypass flaw in Check Point's SmartConsole and a remote code execution bug in Microsoft SharePoint, to its Known Exploited Vulnerabilities catalog. These additions underscore the importance of patching these flaws to prevent potential exploitation by malicious actors.

    The first vulnerability, CVE-2026-16232, is a critical flaw in Check Point's SmartConsole that allows unauthenticated remote attackers to obtain an application login token and gain full administrative access. This vulnerability is being actively exploited, with check Point acknowledging that a limited number of customers have already been targeted by the exploiters.

    In order for this vulnerability to be successfully exploited, the Management Server must be accessible from the internet, and Trusted Clients (GUI clients) access restrictions must be disabled. Attackers are using this flaw to gain unauthorized access to security management systems and apply changes to the security policy and security configuration.

    The second vulnerability, CVE-2026-50522, is a critical remote code execution bug in Microsoft SharePoint that can be triggered without authentication or user interaction. This bug allows attackers to steal SharePoint machine keys in a single request, enabling persistent access even after patching.

    Cybersecurity experts warn that organizations should not only apply the available security updates but also rotate machine keys and other potentially exposed credentials to prevent long-term compromise.

    CISA has ordered federal agencies to fix these flaws by July 25, 2026. Experts recommend that private organizations review the Known Exploited Vulnerabilities catalog and address the vulnerabilities in their infrastructure.

    These additions highlight the need for organizations to stay vigilant and proactive in patching critical vulnerabilities to protect against potential attacks.

    Related Information:
  • https://www.ethicalhackingnews.com/articles/CISA-Adds-Microsoft-SharePoint-and-Check-Point-SmartConsole-Flaws-to-Known-Exploited-Vulnerabilities-Catalog-ehn.shtml

  • https://securityaffairs.com/195889/security/u-s-cisa-adds-microsoft-sharepoint-and-check-point-smartconsole-flaws-to-its-known-exploited-vulnerabilities-catalog.html

  • https://nvd.nist.gov/vuln/detail/CVE-2026-16232

  • https://www.cvedetails.com/cve/CVE-2026-16232/

  • https://nvd.nist.gov/vuln/detail/CVE-2026-50522

  • https://www.cvedetails.com/cve/CVE-2026-50522/


  • Published: Thu Jul 23 15:49:37 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us