Zero Day MonitorZDM
DashboardVulnerabilitiesTrendingZero-DaysNewsAbout
Login
ImpressumPrivacy Policy
Zero Day Monitor © 2026
5496 articles · 220883 vulns · 37/41 feeds (7d)
← Back to list
9.8
CVE-2026-91843
checkpoint · quantum security management

Stack overflow in login process to the Security Management and Log Servers

Description

A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.

Affected Products

VendorProductVersions
checkpointquantum security managementR82.10 with Jumbo Hotfix Take 44 or below, R82 with Jumbo Hotfix Take 126 or below, R81.20 with Jumbo Hotfix Take 166 or below, R81.10 (EOS) with Jumbo Hotfix Take 190 or below, R81 (EOS), R80.40 (EOS), R80.30 (EOS), R80.20 (EOS), R80.10 (EOS), R80 (EOS)

Also Affects

Downstream vendors/products affected by this vulnerability

VendorProductSourceConfidence
check pointsecurity managementcert_advisory90%

References

  • https://support.checkpoint.com/results/sk/sk1000155

Related News (9 articles)

Tier B
CERT-FR1d ago
Bulletin d'actualité CERTFR-2026-ACT-040 (21 septembre 2026)
→ No new info (linked only)
Tier D
BleepingComputer4d ago
New Check Point flaw lets hackers execute code with root privileges
→ No new info (linked only)
Tier D
Heise Security4d ago
Root-Sicherheitslücke gefährdet Check Point Security Management and Log Servers
→ No new info (linked only)
Tier D
SecurityWeek4d ago
Check Point, Kaspersky, Tanium Patch Product Vulnerabilities
→ No new info (linked only)
Tier B
CCCS Canada4d ago
Check Point security advisory (AV26-933)
→ No new info (linked only)
Tier D
The Hacker News5d ago
Critical Check Point Management Flaw Lets Unauthenticated Attackers Run Code as Root
→ No new info (linked only)
Tier B
BSI Advisories5d ago
[NEU] [hoch] Check Point Security Management: Schwachstelle ermöglicht Ausführen von beliebigem Programmcode mit Administratorrechten
→ No new info (linked only)
Tier B
CERT-FR5d ago
Vulnérabilité dans les produits Check Point (17 septembre 2026)
→ No new info (linked only)
Tier C
VulDB6d ago
CVE-2026-91843 | Check Point Quantum Security Management up to R81 (EOS) stack-based overflow
→ No new info (linked only)

Discussion (0)

Loading…

CVSS 3.19.8 CRITICAL
VectorCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
CISA KEV❌ No
Actively exploited❌ No
CWECWE-121
PublishedSep 16, 2026
Trending Score66
Source articles9
Independent8
Info Completeness0/14
Missing: cve_id, title, description, vendor, product, versions, cvss, epss, cwe, kev, exploit, patch, iocs, mitre_attack

Community Vote

0
Login to vote
0 upvotes0 downvotes
No votes yet

Related CVEs (5)

CRITICALCVE-2026-93616EXPKEV
Directory Traversal and File upload allows execution of arbitrary script on the Management Server
Trending: 113
NONECVE-2026-16232EXP
Authentication Bypass in the SmartConsole Login Process Using an Application Token
Trending: 54
CRITICALCVE-2026-85103
Heap-based Buffer Overflow in VPN Certificate ASN.1 Decoding
Trending: 49
CRITICALCVE-2026-62144
Management Authentication Bypass and Privilege Escalation
Trending: 39
NONECVE-2026-18574
Authentication Bypass in Check Point Security Management Server
Trending: 35

Pin to Dashboard

Verification

State: unverified
Confidence: 0%

Vulnerability Timeline

CVE Published
Sep 16, 2026
Discovered by ZDM
Sep 16, 2026