Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks

Executive Summary

Check Point disclosed that attackers exploited a previously unknown vulnerability (CVE‑2026‑93616) in its Security Management Server. The flaw allows unauthenticated remote code execution via the server’s web service, and was used in targeted attacks on July 23. A patch was released on September 22.


Intelligence Metadata - Source Publisher: The Hacker News - Published Date: 2026-09-22T18:29:39+00:00 - Category: threat-intel

Original Description: Attackers exploited a previously unknown flaw in Check Point's Security Management Server in a handful of targeted attacks on July 23, the company said. The flaw, CVE-2026-93616, allows an attacker who can access the server's web service to run scripts on it without logging in. Check Point released a fix on September 22 for the server that controls firewall policies for the Check Point

"I have always thought the actions of men the best interpreters of their thoughts."

— John Locke
Source: The Hacker News