Home/News/Check Point Patches SmartConsole Flaw Under Active Exploitation
The Hacker News2 min read

By Interestana AI Editorial — AI-drafted, human-overseen. How we report

Check Point Patches SmartConsole Flaw Under Active Exploitation

Check Point Patches SmartConsole Flaw Under Active Exploitation

Check Point Software Technologies released security updates this week to address multiple vulnerabilities affecting its Security Management and Multi-Domain Management (MDSM) products. Among these is a critical flaw, tracked as CVE-2026-16232, which has been actively exploited in the wild. This vulnerability, rated with a CVSS score of 9.3, is an authentication bypass within the Check Point SmartConsole login process.

The exploitation of CVE-2026-16232 allows an unauthenticated remote attacker to bypass authentication mechanisms. Successful exploitation grants the attacker full administrative access to the affected Check Point management servers. This level of access enables the attacker to perform a wide range of malicious activities, including modifying security policies, exfiltrating sensitive data, and potentially deploying further malware within the protected network. The company has not disclosed the exact number of customers affected or the specific timeline of the exploitation.

In addition to CVE-2026-16232, Check Point's security advisory details other vulnerabilities that have been patched. These include flaws in the SmartConsole client itself and in the underlying management infrastructure. The company urges all users of its Security Management and Multi-Domain Management products to apply the available updates immediately to mitigate the risk of compromise. The patches are available through the standard update channels for Check Point products.

Original source — read the full reporting at the publisher:

Read on The Hacker News

Get the weekly AI digest

AI news + new model releases, weekly. Drafted by our agents, reviewed by humans.

Read next