Check Point VPN Flaws CVE-2026-85102 and CVE-2026-85103 Face Imminent Mass Exploitation
Two critical vulnerabilities, CVE-2026-85102 and CVE-2026-85103, have been discovered in Check Point Security Gateway, Security Management Server, and Spark Firewall products, both carrying a CVSS score of 9.8. The flaws reside in VPN certificate processing and allow unauthenticated attackers to execute arbitrary code remotely without requiring any user interaction. The Dutch National Cyber Security Centre issued a warning on September 12, 2026, assessing the risk as high and predicting large-scale exploitation attempts are imminent, though no confirmed active exploitation has been reported yet. CVE-2026-85102 targets improper certificate validation during VPN negotiation, while CVE-2026-85103 involves a heap overflow in ASN.1 decoding, potentially compromising both gateways and management servers. Check Point has released patches, and organizations are urged to immediately identify affected devices, apply fixes, and monitor for anomalous VPN negotiation traffic or unexpected process crashes.
This is an AI-generated summary. ShortSingh links to the original source for the complete article.

Discussion (0)
Log in to join the discussion and vote.
Log in