THREATOPS
THREAT OPSThreat News › [NVD] CVE-2026-16232 (CRITICAL 9.1) — An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modif

[NVD] CVE-2026-16232 (CRITICAL 9.1) — An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modif

mednvdPublished 2026-07-22

CVE-2026-16232 CVSS: 9.1 CRITICAL Published: 2026-07-22T14:17:15.513

An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to modify security policies and security configurations. R

Indicators of compromise

Original source: https://nvd.nist.gov/vuln/detail/CVE-2026-16232