# Dutch NCSC warns Check Point VPN flaws face imminent exploitation

_Saturday, September 12, 2026 at 10:14 AM EDT · Security · Latest · Tier 1 — Major_

![Dutch NCSC warns Check Point VPN flaws face imminent exploitation — Primary](https://www.bleepstatic.com/content/hl-images/2026/07/23/Check-Point.jpg)

The Dutch National Cyber Security Centre warned that exploitation of two critical Check Point VPN flaws is imminent and urged organizations to install available updates. CVE-2026-85102 involves improper certificate-data validation during VPN negotiation and could allow remote code execution on a Security Gateway. CVE-2026-85103 is a heap overflow in a VPN certificate ASN.1 decoder that could permit remote code execution on Security Gateways and Security Management Servers. Check Point issued fixes on September 9.

## Sources

- [BleepingComputer](https://www.bleepingcomputer.com/news/security/dutch-ncsc-critical-check-point-vpn-flaws-exploitation-is-imminent/)

---
Canonical: https://techandbusiness.org/newswire/8XZ9uJBHyiHtAN4wwtpOex
Retrieved: 2026-09-12T18:10:30.075Z
Publisher: Tech & Business (techandbusiness.org)
