Quantum Security Gateway
CVE-2026-62145: Local Privilege Escalation in Gaia Portal
A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.
Published
ExploitedNot in CISA KEV
Ransomware useNot reportedPer CISA
SeverityHIGHCVSS 3.1 7.5
EPSS0.39%Chance of exploitation in 30 days
Public exploitNot tracked
FixNot yet
Automatic summary from the vendor's CVE record. We haven't written a full analysis of this vulnerability yet.
Affected and fixed versions
| Product / branch | Fixed in |
|---|---|
| Quantum Security Gateway R82.10 with Jumbo Hotfix Take 36 or below | See the advisory |
| Quantum Security Gateway R82 with Jumbo Hotfix Take 118 or below | See the advisory |
| Quantum Security Gateway R81.20 with Jumbo Hotfix Take 158 or below | See the advisory |
| Quantum Security Gateway R81.10, R81, R80 | See the advisory |
| Quantum Security Management R82.10 with Jumbo Hotfix Take 36 or below | See the advisory |
| Quantum Security Management R82 with Jumbo Hotfix Take 118 or below | See the advisory |
| Quantum Security Management R81.20 with Jumbo Hotfix Take 158 or below | See the advisory |
| Quantum Security Management R81.10, R81, R80 | See the advisory |
Always confirm against the vendor advisory, which lists every fixed hotfix.
What it is
A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.
Sources
KEV status, EPSS score and vendor data refreshed automatically, last on 10 Oct 2026.