Ethical Hacking News
Check Point has disclosed two critical vulnerabilities in its VPN certificate handling, allowing unauthenticated remote attackers to run code on its Security Gateways and Quantum Security Management systems. Organizations should take immediate action to patch these vulnerabilities and review their vulnerability scanning and patching processes to ensure that they are not missing any critical updates.
Check Point has disclosed two critical vulnerabilities in its firewall and management products that handle Virtual Private Network (VPN) certificates. The vulnerabilities, CVE-2026-85102 and CVE-2026-85103, allow unauthenticated remote attackers to run code on Security Gateway and Quantum Security Management systems. The vulnerabilities have a CVSS score of 9.8, indicating they are extremely serious and could allow unauthorized access to sensitive data or disrupt network operations. Customers are urged to patch these vulnerabilities immediately, with patches available through Check Point's Live Patch and Jumbo Hotfix programs. Organizations that can't patch immediately should turn off implied rules for VPN and consider additional guidance from Check Point. The disclosure highlights the importance of staying up to date with security patches and taking proactive steps to protect network security.
Check Point, a leading provider of cybersecurity solutions, has recently disclosed two critical vulnerabilities in its firewall and management products that handle Virtual Private Network (VPN) certificates. The company has patched these vulnerabilities, but the implications for network security are significant, and organizations should take immediate action to protect themselves.
The first flaw, CVE-2026-85102, is a failure to properly validate certificate trust during VPN negotiation. This vulnerability allows an unauthenticated remote attacker to run code on the Security Gateway, which is a critical component of Check Point's firewall appliances. The second flaw, CVE-2026-85103, is a heap-based buffer overflow that occurs while the product decodes the ASN.1 structure of a VPN certificate. This vulnerability also allows an unauthenticated remote attacker to run code on Quantum Security Management and Quantum Security Gateway systems.
Both vulnerabilities have been rated 9.8 on the Common Vulnerability Scoring System (CVSS), which is a widely accepted standard for measuring the severity of vulnerabilities. This rating indicates that the vulnerabilities are extremely serious and could potentially allow an attacker to gain unauthorized access to sensitive data or disrupt network operations.
Check Point has stated that it found both vulnerabilities itself and has no indication that either has been used in an attack. However, the company has urged customers to take immediate action to patch these vulnerabilities. The patches are available through Check Point's Live Patch and Jumbo Hotfix programs.
For organizations that are unable to patch their systems immediately, Check Point has provided guidance on how to mitigate the risks associated with these vulnerabilities. This guidance includes turning off implied rules for VPN, but the company has acknowledged that this approach may be too vague and that additional guidance is needed.
In recent months, Check Point has patched critical flaws in its products that were already being exploited by attackers. These vulnerabilities included authentication bypasses in Remote Access VPN and Mobile Access certificate validation, as well as a SmartConsole authentication bypass. The company has also disclosed that it has seen no evidence of external exploitation of the new vulnerabilities, but it is still important for organizations to take proactive steps to protect themselves.
The disclosure of these vulnerabilities highlights the importance of staying up to date with the latest security patches and taking proactive steps to protect network security. Organizations should review their vulnerability scanning and patching processes to ensure that they are not missing any critical updates.
In conclusion, the disclosure of these critical VPN certificate flaws by Check Point is a reminder of the importance of network security and the need for organizations to take proactive steps to protect themselves. By staying up to date with the latest security patches and taking proactive steps to protect network security, organizations can help to prevent attacks and minimize the risk of data breaches.
Related Information:
https://www.ethicalhackingnews.com/articles/Check-Point-Discloses-Critical-VPN-Certificate-Flaws-Implications-for-Network-Security-ehn.shtml
https://thehackernews.com/2026/09/check-point-discloses-two-98-rated-vpn.html
https://nvd.nist.gov/vuln/detail/CVE-2026-85102
https://www.cvedetails.com/cve/CVE-2026-85102/
https://nvd.nist.gov/vuln/detail/CVE-2026-85103
https://www.cvedetails.com/cve/CVE-2026-85103/
Published: Thu Sep 10 11:26:40 2026 by llama3.2 3B Q4_K_M