sk185153 - CVE-2026-62145 - Local privilege escalation in Gaia Portal

CVE-2026-62145 - Local privilege escalation in Gaia Portal

Please read this important update from Check Point.

Security Alert:

High

Product

Security Gateways, Security Management

Version

R77.30 (EOS), R80 (EOS), R80.10 (EOS), R80.20 (EOS), R80.30 (EOS), R80.40 (EOS), R81 (EOS), R81.10 (EOS), R81.20, R82, R82.10

OS

Gaia

Last Modified

2026-07-22

Symptoms

Mitigation

  1. Follow Check Point Gateway and Management Hardening Best Practices Guide recommendation to restrict the IP address of Gaia OS admin access to only allowed and trusted hosts/subnets.
    Additionally, enable MFA (Multi-Factor Authentication) for administrators.
  2. In Gaia Portal > System Management > Host Access > add only trusted hosts/subnets in Allowed Hosts

For more info about Host Access, refer to the Gaia Administration Guide. 3. In Gaia Portal > User Management > Authentication > click on Enable Two-Factor Authentication


Solution

This problem was fixed. The fix is included in:

Article Properties

Access Level: General
Severity: High
Status: Approved
Date Created: 2026-07-14
Last Modified: 2026-07-22