Check Point IKEv1 Remote-Access VPN - Certificate Authentication Bypass
IKEv1 key exchange contains a broken authentication caused by logic flow weakness in Remote Access and Mobile Access certificate validation, letting unauthenticated remote attackers bypass user authentication and establish VPN connections without valid passwords, exploit requires use of deprecated IKEv1. References: https://labs.watchtowr.com/lets-not-go-to-the-checkpoint-its-a-silly-place-cve-2026-50751/ https://support.checkpoint.com/results/sk/sk185033 https://github.com/watchtowrlabs/watchTowr-vs-Check-Point-CVE-2026-50751 Remediation: Apply Check Point hotfix sk185033 which restores the certificate signature verification in verifyMessagePhase1.
Used 3.4k times · domain, subdomain, ipv4