Check Point Security Management Auth Bypass Exec Cmd
CVE-2026-62144 Published on July 22, 2026
Management Authentication Bypass and Privilege Escalation
An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management Server. Successful exploitation may also allow command execution on managed Security Gateways. Exploitation requires network access to the Management Server without firewall protection or a configuration that does not restrict Trusted Clients.
Vulnerability Analysis
CVE-2026-62144 is exploitable with network access, and does not require authorization privileges or user interaction. This vulnerability is considered to have a low attack complexity. The potential impact of an exploit of this vulnerability is considered to have a high impact on confidentiality and integrity, and no impact on availability.
Weakness Type
What is an authentification Vulnerability?
When an actor claims to have a given identity, the software does not prove or insufficiently proves that the claim is correct.
CVE-2026-62144 has been classified to as an authentification vulnerability or weakness.
Affected Versions
checkpoint Quantum Security Management:- Version R82.10 with Jumbo Hotfix Take 36 or below is affected.
- Version R82 with Jumbo Hotfix Take 118 or below is affected.
- Version R81.20 with Jumbo Hotfix Take 158 or below is affected.
- Version R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30 is affected.
- Version R82.10 with Jumbo Hotfix Take 36 or below is affected.
- Version R82 with Jumbo Hotfix Take 118 or below is affected.
- Version R81.20 with Jumbo Hotfix Take 158 or below is affected.
- Version R81.10, R81, R80.30, R80.20, R80.10, R80, and R77.30 is affected.