Home / Sep 18, 2026 / Story
0
#5 The Hacker News general September 17, 2026 at 18:08 UTC

Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root

By [email protected] (The Hacker News)

AI Summary

Check Point disclosed a critical unauthenticated remote code execution vulnerability in its Security Management Server and Log Server products, allowing network-accessible attackers to run arbitrary code as root without credentials. Check Point has released a fix via its LivePatch channel and reports no evidence of exploitation in the wild, but the affected system controls firewall policy and administrator access — making it a high-value target.

Relevance score: 84.0/100

# More from September 18