/Vulnerability Library

Check Point Security Management Server - SmartConsole Authentication Bypass

CVE-2026-16232
Verified

Description

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. Remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients. Check Point is aware that this vulnerability is being exploited and has affected a very small number of customers.

Severity

Critical

CVSS Score

9.8

Exploit Probability

78%

Affected Product

security_management_server

Published Date

July 29, 2026

Template Author

sfewer-r7, dhiyaneshdk

CVE-2026-16232.yaml
9.8Score

CVSS Metrics

CVSS Vector:
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CVE ID:
cve-2026-16232
CWE ID:
cwe-287

References

https://support.checkpoint.com/results/sk/sk185169https://www.rapid7.com/blog/post/ra-check-point-smartconsole-authentication-bypass-technical-analysis-cve-2026-16232/https://github.com/sfewer-r7/CVE-2026-16232

Remediation Steps

Update to the latest version with the vulnerability fixed.