Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root
The Hacker News, Thursday, September 17th, 2026
The Hacker News reports a critical Check Point management flaw, CVE-2026-91843, lets unauthenticated attackers run code as root.
The Hacker News provides a detailed technical account of CVE-2026-91843, a CVSS 9.8 stack overflow in the pre-authentication login path of Check Point Security Management and Log Servers.
Censys told the publication the overflow is triggered by a login request carrying a very long username, and that the vulnerable path runs only through the Trusted Clients setting governing SmartConsole access.
Check Point said customers on automatic updates are already protected and pointed others to LivePatch advisory sk1000155. The company reported no evidence of exploitation, and Censys said every R82.20 build is affected with no Jumbo Hotfix yet available for that branch.