<?xml version="1.0" encoding="UTF-8"?><rss version="2.0"><channel><title>0dayNews — Check Point</title><description>Security advisories and exploitation reports covering Check Point SmartConsole, firewall appliances, and security gateways — management-plane compromises, policy manipulation, and edge-device vulnerabilities. Combined article + CVE feed for the Check Point beat.</description><link>https://0daynews.com/</link><language>en-us</language><item><title>CVE-2024-24919 — Check Point Quantum Security Gateways Information Disclosure Vulnerability</title><link>https://0daynews.com/cve/cve-2024-24919/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2024-24919/</guid><description>Check Point Quantum Security Gateways contain an unspecified information disclosure vulnerability. The vulnerability potentially allows an attacker to access information on Gateways connected to the internet, with IPSec VPN, Remote Access VPN or Mobile Access enabled. This issue affects several product lines from Check Point, including CloudGuard Network, Quantum Scalable Chassis, Quantum Security Gateways, and Quantum Spark Appliances.</description><pubDate>Sun, 16 Aug 2026 00:00:00 GMT</pubDate><category>Check Point</category><category>high</category><category>cve</category></item><item><title>CVE-2026-16232 — Check Point SmartConsole improper authentication</title><link>https://0daynews.com/cve/cve-2026-16232/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-16232/</guid><description>CVE-2026-16232 lets unauthenticated attackers grab an admin token from SmartConsole. CISA KEV addition July 22; Check Point confirms active exploitation.</description><pubDate>Sun, 16 Aug 2026 00:00:00 GMT</pubDate><category>Check Point</category><category>critical</category><category>cve</category></item><item><title>CVE-2026-50751 — Check Point Security Gateway Improper Authentication Vulnerability</title><link>https://0daynews.com/cve/cve-2026-50751/</link><guid isPermaLink="true">https://0daynews.com/cve/cve-2026-50751/</guid><description>Check Point Security Gateway contains an improper authentication vulnerability in IKEv1 key exchange that could allow an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.</description><pubDate>Sun, 16 Aug 2026 00:00:00 GMT</pubDate><category>Check Point</category><category>critical</category><category>cve</category></item><item><title>Public PoC Out for Exploited Check Point Admin Bypass</title><link>https://0daynews.com/articles/2026-07-29-check-point-smartconsole-cve-2026-16232-poc-release/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-29-check-point-smartconsole-cve-2026-16232-poc-release/</guid><description>Public PoC is out for CVE-2026-16232, Check Point&apos;s CISA KEV-listed admin bypass. Any unpatched SmartConsole server just got cheaper to target — patch or restrict now.</description><pubDate>Wed, 29 Jul 2026 10:00:00 GMT</pubDate><category>Check Point</category><category>article</category></item><item><title>Check Point CVE-2026-16232: Rapid7 Technical Analysis</title><link>https://0daynews.com/articles/2026-07-28-check-point-smartconsole-cve-2026-16232-rapid7-technical-analysis/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-28-check-point-smartconsole-cve-2026-16232-rapid7-technical-analysis/</guid><description>Rapid7&apos;s independent deep-dive into CVE-2026-16232 confirms the auth bypass mechanism and adds MDS deployments to the affected scope. Patch this now.</description><pubDate>Tue, 28 Jul 2026 21:30:00 GMT</pubDate><category>Check Point</category><category>article</category></item><item><title>Check Point SmartConsole Flaw Gives Attackers Admin Access</title><link>https://0daynews.com/articles/2026-07-22-check-point-smartconsole-cve-2026-16232-kev-admin-bypass/</link><guid isPermaLink="true">https://0daynews.com/articles/2026-07-22-check-point-smartconsole-cve-2026-16232-kev-admin-bypass/</guid><description>CVE-2026-16232 lets unauthenticated attackers grab an admin token from SmartConsole. CISA KEV addition July 22; Check Point confirms active exploitation.</description><pubDate>Wed, 22 Jul 2026 22:00:00 GMT</pubDate><category>Check Point</category><category>article</category></item></channel></rss>