Check Point SmartConsole Zero-Day Flaw Actively Exploited

Check Point SmartConsole Zero-Day Flaw Actively Exploited

First seen 23 Jul 2026, 09:23 UTC ThehackernewsBleepingcomputerSecurityaffairs.CoFeeds.4Sysopsnvd.nist.gov+2 86% similarity 80.0

Article Content

Browse articles
ThreatCluster

Check Point Software has reported a critical zero-day vulnerability, CVE-2026-16232, in its SmartConsole GUI admin panel, allowing unauthenticated attackers to gain administrative access. This flaw enables attackers to obtain an application login token, facilitating modifications to security policies and configurations. Successful exploitation requires internet access to the Management Server IP and no restrictions on Trusted Clients. Check Point is aware of active exploitation affecting a small number of customers and has released patches. The Cybersecurity and Infrastructure Security Agency (CISA) has mandated U.S. federal agencies to patch this vulnerability by July 25, 2026. Organizations are urged to prioritize patching to prevent potential attacks. This vulnerability follows a history of similar issues in Check Point products, highlighting ongoing security concerns.

Key Points: • CVE-2026-16232 allows unauthenticated access to SmartConsole with full admin privileges. • Exploitation requires internet access to Management Server IP and no Trusted Clients restrictions. • CISA has mandated federal agencies to patch this vulnerability by July 25, 2026.

ThreatCluster AI

Timeline

2024-05-28
CVE-2024-24919 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-06-08
CVE-2026-50751 published
Vulnerability assigned a CVE identifier and published in the National Vulnerability Database.
MITRE
2026-07-22
CVE-2026-16232 published
Check Point disclosed a critical authentication bypass vulnerability in SmartConsole, impacting security management servers.
Bleepingcomputer
2026-07-22
CVE-2026-16232 added to CISA KEV
CISA included CVE-2026-16232 in its Known Exploited Vulnerabilities catalog due to active exploitation.
Bleepingcomputer
2026-07-23
Check Point releases patches
Check Point issued security updates to address CVE-2026-16232, advising all organizations to prioritize patching.
Securityaffairs.Co
2026-07-23
CISA mandates patching for federal agencies
CISA ordered U.S. federal agencies to patch vulnerable SmartConsole instances by July 25, 2026, under BOD 26-04.
Bleepingcomputer

Community

Browse all →