rootpwn

Advisories

Check Point Urges Immediate Patch for Dual 9.8‑Score Vulnerabilities

On September 9 2026, Check Point issued emergency updates for its Security Gateway, Security Management Server, and Spark Firewall. Two critical flaws—both rated 9.8 on CVSS—enable unauthenticated remote code execution on devices running Remote Access or Site‑to‑Site VPN. CERT‑EU urges rapid deployment of the hotfixes, focusing first on internet‑facing and perimeter appliances.

Check Point’s latest advisory warns that two newly disclosed vulnerabilities could be leveraged by attackers to take full control of affected VPN appliances. Both flaws carry a CVSS score of 9.8 and are exploitable from outside the network without authentication.

What’s at risk?

  • Check Point Security Gateway
  • Check Point Security Management Server
  • Check Point Spark Firewall

The weaknesses are only triggered when the appliance is configured for Remote Access VPN or Site‑to‑Site VPN. Once exploited, an attacker can run arbitrary code, effectively compromising the entire device.

Immediate action required

Check Point has released hotfixes for all affected firmware versions. CERT‑EU recommends that organizations apply the patches as soon as possible, prioritising devices that sit on the perimeter or are exposed to the internet.

“The combination of high severity and remote‑only exploitation means these vulnerabilities pose an urgent threat to all VPN deployments,” the advisory states.

Failure to patch could leave critical infrastructure vulnerable to takeover, data exfiltration, or further lateral movement within the network.

Check Point Remote Access VPN Site‑to‑Site VPN Critical Vulnerabilities Patch CVSS 9.8 CERT‑EU

← All news