Today's cybersecurity headlines are brought to you by ThreatPerspective


Ethical Hacking News

Check Point Fixes a New Actively Exploited Critical Security Flaw, Leaving Businesses Vulnerable to Script Uploading and Execution




Check Point has released a critical hotfix to address a newly discovered vulnerability in its Security Management Server, which allows unauthenticated attackers to upload and execute scripts on vulnerable systems. The vulnerability, CVE-2026-93616, has already been exploited in the wild, leaving businesses vulnerable to catastrophic breaches. Organizations must take immediate action to apply the available hotfix and prevent exploitation. Stay informed and proactive to minimize the risk of a security breach and protect your sensitive data.

  • Check Point has addressed a critical security flaw in its Security Management Server, allowing unauthenticated attackers to upload and execute scripts on vulnerable systems (CVE-2026-93616).
  • The vulnerability has already been exploited in the wild, putting organizations at risk of a catastrophic breach if not patched.
  • The Security Management Server is a critical component of Check Point's security infrastructure, and a compromise could have far-reaching consequences for an enterprise network.
  • Check Point has released emergency hotfixes for affected products, urging customers to apply them as soon as possible.
  • Organizations are advised to place vulnerable systems behind a firewall and allow access only from trusted IP addresses as a temporary measure until the hotfix can be installed.
  • The discovery of this critical security flaw highlights the importance of prioritizing security and staying vigilant in the face of emerging threats.



  • Check Point has recently addressed a critical security flaw in its Security Management Server, which allows unauthenticated attackers to upload and execute scripts on vulnerable systems. The vulnerability, tracked as CVE-2026-93616, has already been exploited in the wild, with attackers able to abuse the flaw to gain full administrative access to affected systems. This means that organizations running Check Point Security Management Server may be at risk of a catastrophic breach, especially if they do not apply the available hotfix.

    The Security Management Server is a critical component of Check Point's security infrastructure, controlling security policies, admin activity, and system logs across deployments. A compromise of this system could have far-reaching consequences for an enterprise network, making it essential for organizations to take immediate action to patch the vulnerability.

    Check Point has released emergency hotfixes for the affected products, including Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent. The company is urging customers to apply these hotfixes as soon as possible to prevent exploitation.

    The vulnerability was discovered by the Dutch National Cyber Security Centre, which warned of two critical Check Point VPN flaws just two weeks prior to the discovery of the Security Management Server vulnerability. This highlights the importance of staying vigilant and proactive in the face of emerging security threats.

    The actual number of victims of this vulnerability may be higher than reported, as some compromises may go undetected or never be reported to Check Point. However, with the release of the hotfix and the availability of indicators of compromise (IOCs), security teams can now take proactive steps to assess their systems and logs for signs of an attack.

    If a hotfix cannot be installed immediately, organizations are advised to place the vulnerable system behind a firewall and allow access only from trusted IP addresses. This can be configured through Manage & Settings → Permissions & Administrators → Trusted Clients in SmartConsole. However, this is only a temporary measure, and organizations should prioritize applying the hotfix as soon as possible.

    The discovery of this critical security flaw serves as a reminder of the importance of prioritizing security and staying vigilant in the face of emerging threats. Organizations must take proactive steps to patch vulnerabilities and protect their systems from exploitation. By staying informed and proactive, organizations can minimize the risk of a security breach and protect their sensitive data.



    Related Information:
  • https://www.ethicalhackingnews.com/articles/Check-Point-Fixes-a-New-Actively-Exploited-Critical-Security-Flaw-Leaving-Businesses-Vulnerable-to-Script-Uploading-and-Execution-ehn.shtml

  • https://securityaffairs.com/199549/security/check-point-fixes-a-new-actively-exploited-critical-security-flaw.html


  • Published: Tue Sep 22 15:41:15 2026 by llama3.2 3B Q4_K_M













    © Ethical Hacking News . All rights reserved.

    Privacy | Terms of Use | Contact Us