CVE-2026-50751 - Check Point Security Gateway Improper Authentication Vulnerability
Project:Check Point
Product:Security Gateway
Date Added:2026-06-08Due Date:2026-06-11
Vulnerability Name
Check Point Security Gateway Improper Authentication Vulnerability
Description
Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.
Known To Be Used in Ransomware Campaigns?
Known
Action
Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
Additional Notes
https://blog.checkpoint.com/security/check-point-releases-important-hotfix-for-vulnerabilities-in-deprecated-ikev1-vpn-protocol/
https://support.checkpoint.com/results/sk/sk185033?_gl=1*1wqeqhc*_gcl_au*MTI1MzE5MjI2LjE3ODA5MzQ1NTM.
https://nvd.nist.gov/vuln/detail/CVE-2026-50751