peter bassill · operator
$ cve CVE-2026-50751 JSON

CVE-2026-50751 KEV

9.3
CRITICAL · CVSS 3.1 · EPSS 6.3% (pctl 93)

Patch first

On CISA KEV — known exploited in the wild, due 2026-06-11.

Description

A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.

Scoring

CVSS9.3 (CRITICAL, v3.1)
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:H/I:L/A:N
EPSS6.3% — more likely to be exploited than 93% of all CVEs
WeaknessCWE-287
On CISA KEVyes — remediate by 2026-06-11
Public exploitnone known
Published2026-06-08
Last modified2026-08-04

CISA KEV

NameCheck Point Security Gateway Improper Authentication Vulnerability
Added2026-06-08
Due2026-06-11
Vendor / productCheck Point / Security Gateway
Ransomware useknown

Affected (22)

VendorProduct
checkpointgaia embedded
checkpointgaia os
checkpointquantum spark 1530
checkpointquantum spark 1535
checkpointquantum spark 1550
checkpointquantum spark 1555
checkpointquantum spark 1570
checkpointquantum spark 1570r
checkpointquantum spark 1575
checkpointquantum spark 1575r
checkpointquantum spark 1590
checkpointquantum spark 1595r
checkpointquantum spark 1600
checkpointquantum spark 1800
checkpointquantum spark 1900
checkpointquantum spark 2000
checkpointquantum spark 2530
checkpointquantum spark 2550
checkpointquantum spark 2560
checkpointquantum spark 2570
checkpointquantum spark 2580
checkpointquantum spark 2590

References

→ the Explorer  ·  watch your stack  ·  NVD