CVE-2026-16232Critical· 9.1▾ Hadal⚠ Exploited in the wild0dayPoC availableAn authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successfu…
▾ Hadal zone — Critical and actively exploited (CISA KEV / 0day)
impact 50.1 · likelihood 14.4 · exploitation 25
A public proof-of-concept already exists for this vulnerability — see Exploit availability below.
Public exploit / PoC code seen in 3 sources. Availability, not in-the-wild use.
Exploit-prediction probability, daily snapshots since Aug 2.
Disclosure to exploitation, from the record and what we observed since indexing it.
Disclosed via NVD
Federal remediation due Jul 25, 2026
Last analysed / modified upstream
71%
71% → 89%
3 GitHub repos · Metasploit ×1 · Nuclei ×1
Added to the CISA catalog on Jul 22, 2026. Federal remediation due Jul 25, 2026. View catalog ↗
An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. Remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients. Check Point is aware that this vulnerability is being exploited and has affected a very small number of customers.
multi-domain_security_management >= r77.30, < r81.20multi-domain_security_management = r81.20multi-domain_security_management = r82multi-domain_security_management = r82.10quantum_security_management >= r77.30, < r81.20quantum_security_management = r81.20quantum_security_management = r82quantum_security_management = r82.10Upgrade past the affected range:
multi-domain_security_management r81.20quantum_security_management r81.20Field changes observed since this record was first indexed.
Connected by shared product, vendor, weakness, or advisory.
CVE-2023-49105Critical· 9.8An issue was discovered in ownCloud owncloud/core before 10.13.1
CVE-2022-40684Critical· 9.8An authentication bypass using an alternate path or channel [CWE-288] in Fortinet FortiOS version 7.2.0 through 7.2.1 and 7.0.0 through 7.0.6, FortiProxy version 7.2.0 and version 7.0.0 through 7.0.6 and FortiSwitchManager version 7.2.0 …
CVE-2023-35078Critical· 9.8An authentication bypass vulnerability in Ivanti EPMM allows unauthorized users to access restricted functionality or resources of the application without proper authentication.
CVE-2020-12812Critical· 9.8An improper authentication vulnerability in SSL VPN in FortiOS 6.4.0, 6.2.0 to 6.2.3, 6.0.9 and below may result in a user being able to log in successfully without being prompted for the second factor of authentication (FortiToken) if t…
CVE-2024-24919High· 8.6Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Software Blades
CVE-2026-42018High· 7.5Anonymous user token generation exposure in JFrog Artifactory