HIGHVulnerability
Verified
Global

CISA KEV: Check Point Security Gateway — Check Point Security Gateway Improper Authentication Vulnerability

·Source: CISA KEV

Updated:

Executive Summary

Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.

Analysis

Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password. Added to CISA Known Exploited Vulnerabilities catalog on 2026-06-08. Remediation due: 2026-06-11.

Indicators of Compromise (1)

CVE (1)
CVE-2026-50751
Source Attribution

Originally published by CISA KEV on Jun 8, 2026. Verified by: CISA.

Related Threats

MEDIUMVulnerability

Not just Korea: Google leaked identifying info for sex crime victims across the world

Shin Da-eun and Park Kang-su report: Korea was not the only country where victims who sent Google removal requests about illegally obtained sexual images ended up having their private information posted online, the Hankyoreh has confirmed. “Photos of me from when I was a minor were distributed without my consent. They were posted on an... Source

DataBreaches.net
MEDIUMVulnerability

NYS DFS Issues New Cybersecurity Guidance on Risk Assessments for Financial Services Entities

New York State Department of Financial Services (DFS): September 10, 2026 New York State Department of Financial Services (DFS) Acting Superintendent Kaitlin Asrow today issued new cybersecurity guidance outlining the Department’s expectations for DFS-regulated entities’ on conducting risk assessments sufficient to inform their cybersecurity programs. The guidance outlines requirements regarding s

DataBreaches.net
CRITICALVulnerability

NVD CRITICAL: CVE-2026-90558 — sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attri...

sngrep through 1.8.4 contains stack buffer overflow vulnerabilities in SIP attribute formatting routines when header values exceed the 255-byte buffer limit. Attackers can craft malicious SIP packets with oversized Call-ID, X-Call-ID, or other header fields to overflow stack buffers and cause crashes or execute arbitrary code during packet parsing and rendering.

CVE-2026-90558
NIST NVD