Security Management and SmartConsole
CVE-2026-18574: Authentication Bypass in Check Point Security Management Server
An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) could allow an unauthenticated remote attacker with network access to Management services to execute arbitrary commands on the Security Management Server.
Published
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| Security Management Server R82.10 with Jumbo Hotfix Accumulator Take 39 or below | See the advisory |
| Security Management Server R82 with Jumbo Hotfix Accumulator Take 121 or below | See the advisory |
| Security Management Server R81.20 with Jumbo Hotfix Accumulator Take 160 or below | See the advisory |
| Security Management Server R81.10 | See the advisory |
| Security Management Server R81 | See the advisory |
| Security Management Server R80.40 | See the advisory |
| Security Management Server R80.30 | See the advisory |
| Security Management Server R80.20 | See the advisory |
| Security Management Server R80.10 | See the advisory |
| Security Management Server R80 | See the advisory |
| Multi-Domain Security Management Server R82.10 with Jumbo Hotfix Accumulator Take 39 or below | See the advisory |
| Multi-Domain Security Management Server R82 with Jumbo Hotfix Accumulator Take 121 or below | See the advisory |
| Multi-Domain Security Management Server R81.20 with Jumbo Hotfix Accumulator Take 160 or below | See the advisory |
| Multi-Domain Security Management Server R81.10 | See the advisory |
| Multi-Domain Security Management Server R81 | See the advisory |
| Multi-Domain Security Management Server R80.40 | See the advisory |
| Multi-Domain Security Management Server R80.30 | See the advisory |
| Multi-Domain Security Management Server R80.20 | See the advisory |
| Multi-Domain Security Management Server R80.10 | See the advisory |
| Multi-Domain Security Management Server R80 | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
An authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) could allow an unauthenticated remote attacker with network access to Management services to execute arbitrary commands on the Security Management Server. Successful exploitation could result in full compromise of the Security Management system. Check Point discovered this issue internally and has no indication of active exploitation.
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.