Wire · technology
CISA Warns of Check Point Authentication Vulnerability Actively Exploited in the Wild
◆ Sectors
◆ Geography
◆ Source
◆ Verified
Fusion42 · 23 July 2026 · Fusion42 review
CISA warns of a critical authentication vulnerability (CVE-2026-16232) in Check Point SmartConsole with CVSS 9.3 that allows unauthenticated remote attackers to obtain admin tokens and bypass authentication controls; active exploitation in the wild has been confirmed, affecting R81.10, R81.20, R82, and R82.10 versions.
This Wire brief sits within Fusion42's coverage of Cybersecurity, and 4 sources have reported it between 23 Jul 2026 and 24 Jul 2026.
◆ ◆ The Wire takeaway
If your Check Point Security Management or Multi-Domain Management platform sits on the internet, attackers already have your admin credentials—patch R81 and R82 today or move the management interface offline. This vulnerability is being exploited right now.
◆ Coverage
4 sources · first reported 23 Jul 2026 · latest 24 Jul 2026
◆ Related on Wire
◆ Topics