sk184983 - CVE-2026-48134 - SQL injection issue in UserCheck Portal when DLP is active

CVE-2026-48134 - SQL injection issue in UserCheck Portal when DLP is active

Please read this important update from Check Point.

Security Alert:

Medium

Product: Security Gateways
Version: R77.20 (EOS), R77.30 (EOS), R80.10 (EOS), R80.20 (EOS), R80.30 (EOS), R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82, R82.10
Last Modified: 2026-06-11

Symptoms

Exposure is reduced if the UserCheck Portal is not accessible from untrusted networks.

Solution

Mitigation

Validate that the UserCheck Portal is accessible only through internal interfaces.

To configure this setting:

  1. In SmartConsole, go to Gateways and Servers.
  2. Double-click each Security Gateway or cluster object.
  3. Go to UserCheck > Accessibility.
  4. Make sure that Through internal interfaces is selected.

Solution

The fix is included in:

Article Properties

Access Level: General
Severity: Medium
Status: Approved
Date Created: 2026-05-20
Last Modified: 2026-06-11