The gist: CVE-2026-16232 (CVSS 9.3) allows unauthenticated attackers to log into SmartConsole instances — a PoC is now publicly available.
Researchers have published a working exploit proof-of-concept for CVE-2026-16232, an authentication bypass in Check Point Security Management Server and Multi-Domain Security Management Server that is already being actively exploited.
The vulnerability CVE-2026-16232 affects Check Point Security Management Server and Multi-Domain Security Management Server (MDS). It carries a CVSS score of 9.3 and enables authentication bypass in the SmartConsole login process. Security researchers have now published additional technical details and a working proof-of-concept exploit.
The vulnerability is already being actively exploited by attackers in the wild. With the publication of a publicly available PoC, the risk increases exponentially: attackers without deep specialized knowledge can now directly gain access to central management instances — without valid credentials.
For CISOs, this means highest priority for patch deployment: access to Security Management Servers is the attacker entry point for comprehensive network manipulation and lateral movement. Early patching is critical to minimize the exploitable window.
Source: thehackernews.com · Published 29 July 2026
Lumi AI News — AI-assisted curation in accordance with Article 50 EU AI Act. Paraphrase and classification through Lumi News Pipeline v1.7.3.