cvedb.io
CVE-2026-50751
CRITICAL · CVSS 9.3 ⚠ KEV — EXPLOITED
EPSS exploitation probability: 99%
⚠ Listed in the CISA Known Exploited Vulnerabilities catalog — actively exploited.
Published 2026-06-08 · Last modified 2026-07-23T07:10:00.113

Summary

A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.

Affected products

Check Point — Security Gateway

Does this affect you?

Add your gear to cvedb and we'll alert you only when Check Point ships something exploited.

Check my exposure →

References

This product uses data from the NVD API but is not endorsed or certified by the NVD. Informational only; not professional security advice.