CRITICAL: Check Point SmartConsole Auth Bypass (CVE-2026-16232) Exploited to Hand Attackers Full Firewall Admin
Check Point patched an actively exploited authentication bypass in SmartConsole, CVE-2026-16232 (CVSS 9.3), that lets unauthenticated remote attackers grab an application login token and log in with full administrator privileges on Security Management and Multi-Domain Management Servers. CISA added it to the KEV catalog with a July 25 federal deadline.