
Check Point
Israeli network-security vendor; its Remote Access VPN carried CVE-2026-50751, a CVSS 9.3 auth bypass exploited a month before the June 2026 hotfix.
Check Point disclosed on 8 June 2026 that CVE-2026-50751, a CVSS 9.3 authentication bypass in its Remote Access VPN, had been actively exploited for roughly a month before the hotfix shipped.
Last refreshed: 3 August 2026 · Appears in 1 active topic
If clients can self-assess their own credentials in Check Point's VPN, how many other gateway products share the same design flaw?
Timeline for Check Point
Mentioned in: PaperCut print servers under active attack
Cybersecurity: Threats and DefencesMentioned in: Qilin's own affiliate now outposts it
Cybersecurity: Threats and DefencesSharePoint stays under active KEV fire
Cybersecurity: Threats and DefencesMentioned in: 86,644 Fortinet logins become a hit list
Cybersecurity: Threats and DefencesMentioned in: CISA tears up its KEV deadline rules
Cybersecurity: Threats and DefencesBackground
Check Point Software Technologies is an Israeli network-security vendor founded in 1993, headquartered in Tel Aviv, and one of the largest dedicated cybersecurity companies globally by revenue. Its product portfolio spans network firewalls, unified threat management, cloud security and the Remote Access VPN product line. In June 2026, Check Point disclosed that CVE-2026-50751, a CVSS 9.3 authentication bypass affecting its Remote Access VPN via a deprecated IKEv1 PATH, had been actively exploited for approximately one month before the hotfix shipped on 8 June; CISA added the flaw to the KEV catalogue the same day with a three-day federal Deadline, the shortest KEV window recorded that cycle .
WatchTowr Labs published a working proof-of-concept identifying the root cause as CWE-1337, the gateway permitting the client to self-assess credential validity, a design flaw rather than a coding error. Exploitation was confirmed at a few dozen organisations, with one Qilin ransomware affiliate confirmed in post-compromise activity, and the Dutch NCSC warned of imminent large-scale abuse after the proof-of-concept release. Check Point Software Technologies is distinct from Check Point Research, its threat-intelligence Arm, a separate Lowdown entity that produces public threat reporting independently of the product division.
Check Point is one of several major VPN and network security vendors to suffer a zero-day in 2025-2026, a period in which threat actors have systematically targeted perimeter devices as a preferred initial-access vector.