Unauthenticated File Disclosure via Identity Awareness Blade on Check Point SG
CVE-2026-48133 Published on May 26, 2026
Identity Awareness Captive Portal - Unauthenticated Local File Inclusion
When the Identity Awareness blade is enabled with Browser-Based Authentication, an unauthenticated user may be able to read certain internal files on the Security Gateway.
Vulnerability Analysis
CVE-2026-48133 can be exploited with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality, with no impact on integrity and availability.
Weakness Type
What is a Remote file include Vulnerability?
The PHP application receives input from an upstream component, but it does not restrict or incorrectly restricts the input before its usage in "require," "include," or similar functions. In certain versions and configurations of PHP, this can allow an attacker to specify a URL to a remote location from which the software will obtain the code to execute. In other cases in association with path traversal, the attacker can specify a local file that may contain executable statements that can be parsed by PHP.
CVE-2026-48133 has been classified to as a Remote file include vulnerability or weakness.
Products Associated with CVE-2026-48133
Want to know whenever a new CVE is published for Check Point Software Security Gateway? stack.watch will email you.
Affected Versions
checkpoint Quantum Security Gateway:- Version R82.10 with Jumbo Hotfix Take 6 or below is affected.
- Version R82 with Jumbo Hotfix Take 91 or below is affected.
- Version R81.20 with Jumbo Hotfix Take 127 or below is affected.
- Version All releases from R81.10 and below is affected.