PlatformPlansPartners
Resources
ToolsBlogDocs
Sign Up →
🔴
CISA Known Exploited Vulnerability
This CVE is actively exploited in the wild. CISA mandates federal agencies to patch immediately.
CVE

CVE-2026-50751

9.3
CVSScritical
Exploitable remotely over the internet · no authentication required.
Description

A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.

Attack Vector
Network
Privileges Req.
None
User Interaction
None
quantum security gatewayspark firewalls
Updated Sep 18, 2026View on NVD →
S4E scanner

Check Point IKEv1 Remote-Access VPN - Certificate Authentication Bypass

IKEv1 key exchange contains a broken authentication caused by logic flow weakness in Remote Access and Mobile Access certificate validation, letting unauthenticated remote attackers bypass user authentication and establish VPN connections without valid passwords, exploit requires use of deprecated IKEv1. References: https://labs.watchtowr.com/lets-not-go-to-the-checkpoint-its-a-silly-place-cve-2026-50751/ https://support.checkpoint.com/results/sk/sk185033 https://github.com/watchtowrlabs/watchTowr-vs-Check-Point-CVE-2026-50751 Remediation: Apply Check Point hotfix sk185033 which restores the certificate signature verification in verifyMessagePhase1.

Used 3.4k times · domain, subdomain, ipv4

CVE history: quantum security gateway

Predict next CVE date with AI

Monitor this CVE on your assets

S4E maps published CVEs to scanners and forecasts the next disclosure window for your stack.

Create a free account →