hacker-news · Crawled Jul 23, 2026

Check Point Patches Exploited SmartConsole Flaw Allowing Full Admin Access

6 IoCs
Read original article ↗

AI Summary

Check Point has patched multiple critical vulnerabilities in its Security Management and Multi-Domain Security Management products, including CVE-2026-16232, an authentication bypass flaw under active exploitation. The vulnerability allows unauthenticated remote attackers to obtain full administrative access to the SmartConsole, enabling modification of security policies and configurations. Exploitation requires internet-accessible management interfaces without IP restrictions, and CISA has added the flaw to its Known Exploited Vulnerabilities catalog, mandating federal agencies to patch by July 25, 2026.

AI-extracted · verify before operational use

Indicators of Compromise 6 extracted

Type Value Detail
IP 151[.]241[.]99[.]207 Details →
IP 151[.]241[.]99[.]233 Details →
IP 158[.]62[.]198[.]182 Details →
IP 192[.]142[.]10[.]99 Details →
IP 139[.]28[.]37[.]250 Details →
IP 194[.]213[.]18[.]137 Details →