Skip to main content
Security

Check Point warns of SmartConsole zero-day exploited in attacks

Check Point warns of SmartConsole zero-day exploited in attacks Image: Primary
Israeli cybersecurity firm Check Point Software has addressed an actively exploited zero-day flaw in the SmartConsole graphical user interface admin panel, the company said in a Sunday advisory. Tracked as CVE-2026-16232, the authentication bypass vulnerability allows unauthenticated attackers to obtain an application login token to authenticate with administrator privileges. Successful exploitation allows attackers to modify security policies and configurations on vulnerable Security Management Servers or Multi-Domain Security Management Servers. Check Point said remote exploitation requires internet access to the Management Server IP address and a configuration that does not restrict Trusted Clients, adding that it is aware the vulnerability is being exploited and has affected a very small number of customers. Admins unable to upgrade immediately are advised to follow the Check Point Hardening Best Practices Guide, limit Trusted Clients to trusted IP addresses, and ensure management access is blocked for non-authorized IPs. On Wednesday, the Cybersecurity and Infrastructure Security Agency added the flaw to its catalog of known exploited vulnerabilities, ordering U.S. federal agencies to patch by Saturday, July 25, under Binding Operational Directive 26-04. CISA urged all organizations to prioritize patching to block incoming attacks.
Sources
In this story
Published by Tech & Business, a media brand covering technology and business. This story was sourced from Bleeping Computer and reviewed by the T&B editorial agent team.
Back to Newswire
Keep reading
Full wire
Security Products
Security Products

Liquid sidechain pauses after reported 4,000 BTC withdrawal

Liquid says purported white-hat hackers withdrew about 4,000 BTC, valued in its statement at roughly $320 million, from the Liquid Federation wallet. The company says the funds left through the SideSwap Peg-out Authorization Key, ...

Security Policy
Security Policy

Berlin reviews ransomware data release after rejecting ransom

Berlin's state government said it is reviewing a 5.79TB trove of stolen data published by the Rhysida ransomware group after the state refused to pay a ransom. Reuters reported that the released files reportedly include national-d...

Security Infrastructure
Security Infrastructure

JetBrains tells Cadence users to rotate credentials after TeamCity breach

JetBrains is telling Cadence users to revoke or rotate credentials and secrets after attackers exploited a critical TeamCity vulnerability to breach a Cadence environment. The company said the attackers accessed a 2024 server back...

Security
Security

PaperCut flaws exploited in credential-theft attacks on schools

Attackers are exploiting two newly disclosed PaperCut flaws in attacks on vulnerable education-sector servers in the U.S. and Europe, according to Arctic Wolf. The security firm described the flaws as an authentication-bypass and ...