Critical Check Point Flaw Lets Unauthenticated Attackers Run Code as Root
ID: fe807291-65e5-5fec-8356-880aa3fa493f
STIX ID: report--fe807291-65e5-5fec-8356-880aa3fa493f
Feed Name: CosmicBytez Labs
Check Point patched a critical CVE-2026-91843 (CVSS 9.8) stack-overflow vulnerability in its Security Management Server and Log Server that permits unauthenticated remote code execution as root via a crafted oversized username in the login handler; exploitation requires access through the product's "Trusted Clients" SmartConsole path. Check Point released LivePatch fixes (advisory sk1000155) and recommends restricting Trusted Clients, avoiding direct internet exposure of management servers, and verifying LivePatch installation; the disclosure notes no evidence of active exploitation at time of reporting.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
