Post
CRITICAL ⚡ MUST-KNOW

Check Point Patches Actively Exploited SmartConsole Authentication Bypass

· zero-day · vulnerability

Check Point released security updates fixing multiple vulnerabilities in its Security Management and Multi-Domain Management (MDSM) products, including a critical authentication bypass in the SmartConsole login process tracked as CVE-2026-16232 (CVSS 9.3). The flaw has been exploited in the wild against customers with certain configurations. Successful exploitation reportedly grants full administrative access to the affected management console. Organizations running Check Point Security Management or MDSM should apply the patch immediately and check for signs of prior compromise.