The point: Check Point has patched a zero-day vulnerability in the SmartConsole management interface that was being exploited in active attacks.
Check Point Software has fixed a zero-day vulnerability in the SmartConsole administration interface that was being exploited in practice. The security flaw enabled attackers to gain unauthorized access to the management infrastructure.
Israeli cybersecurity company Check Point Software has released a security update for an actively exploited zero-day vulnerability in SmartConsole. SmartConsole is the graphical administration interface of the Check Point management platform, through which firewall and security policies are centrally configured.
The vulnerability was already being exploited by attackers in the field before a patch became available. This poses a significant risk to organizations that operate Check Point systems in production environments, as access to SmartConsole directly influences the security configuration of the entire infrastructure.
CISOs should prioritize deploying available patches and verify whether their SmartConsole instances have been compromised. Activity logs of the administration interface should be examined for suspicious access and configuration changes.
Source: www.bleepingcomputer.com · Published 23 July 2026
Lumi AI News — AI-assisted curation in accordance with Art. 50 EU AI Act. Paraphrase and classification by Lumi News Pipeline v1.7.3.