CVE-2026-16232 - Check Point SmartConsole Improper Authentication Vulnerability
Check Point SmartConsole contains an improper authentication vulnerability which could allow an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges.
- Severity
- critical
- Product
- Check Point SmartConsole
- Published
- 2026-07-22
- EPSS
- 0.78
- CISA KEV
- Known exploited
- Ransomware
- Known campaign use
References and validation
- https://github.com/search?q=CVE-2026-16232&type=repositories
- https://nvd.nist.gov/vuln/detail/CVE-2026-16232
Entries are refreshed from CISA KEV and FIRST EPSS. Validate applicability before testing.