sk185152 - CVE-2026-62144 - Management Authentication Bypass and Privilege Escalation

CVE-2026-62144 - Management Authentication Bypass and Privilege Escalation

Please read this important update from Check Point.

Security Alert:

High

Product

Multi-Domain Security Management, Security Management

Version

R77.30 (EOS), R80 (EOS), R80.10 (EOS), R80.20 (EOS), R80.30 (EOS), R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82, R82.10

Last Modified

2026-07-22

Symptoms

Mitigation

  1. Follow the Check Point Hardening Best Practices Guide.

  2. Limit Trusted Clients (GUI clients) to trusted IP addresses/subnets.

    To do so,

    1. In SmartConsole, go to Manage & Settings > Permissions & Administrators > Trusted Clients.
    2. Double-click the client you want to edit.
    3. In the Trusted Client configuration window that opens, change the settings as needed.
      • Make sure do not use "Any" as a Type.
    4. Click OK.
  3. Protect Management access with Firewall, restrict access to trusted IP addresses, and verify that implied rules for control connections are enabled. This will create an implied rule that will prevent management access for non-authorized IP addresses.

Solution

This problem was fixed. The fix is included in:

Article Properties