Check Point / Quantum Security Gateway
10 CVEs
| CVE ID | Description | Severity | CVSS | Published |
|---|---|---|---|---|
| CVE-2026-85103 | Heap-based Buffer Overflow in VPN Certificate ASN.1 Decoding | CRITICAL | 9.8 | Sep 9, 2026 |
| CVE-2026-85102 KEV | Improper Certificate Validation in Quantum Security Gateway | CRITICAL | 9.8 | Sep 9, 2026 |
| CVE-2026-62145 | Local Privilege Escalation in Gaia Portal | HIGH | 7.5 | Jul 22, 2026 |
| CVE-2026-50751 KEV | User Authentication Bypass in VPN Remote Access and Mobile Access | CRITICAL | 9.3 | Jun 8, 2026 |
| CVE-2026-50752 | Certificate Validation Bypass in VPN Site-to-Site Connections Using IKEv1 | HIGH | 7.4 | Jun 8, 2026 |
| CVE-2026-48135 | HTTP service can incorrectly process malformed HTTP requests | MEDIUM | 5.3 | May 26, 2026 |
| CVE-2026-48134 | SQL injection issue in UserCheck Portal when DLP Software Blade is active | MEDIUM | 5.6 | May 26, 2026 |
| CVE-2026-48133 | Identity Awareness Captive Portal - Unauthenticated Local File Inclusion | HIGH | 7.5 | May 26, 2026 |
| CVE-2026-48132 | VPN service may restart unexpectedly when processing IKE traffic over NAT-T 4500/UDP | HIGH | 8.1 | May 26, 2026 |
| CVE-2026-48131 | VPND IKE Fragment Reassembly - Heap Out-of-Bounds Write via Sequence Number Zero | HIGH | 8.1 | May 26, 2026 |
| CVE-2024-24914 | Authenticated Gaia users can inject code or commands by global variables through special HTTP requests. A Security fix that mitigates this vulnerability is ava… | HIGH | 8.0 | Nov 7, 2024 |
Showing 1 to 10 of 10 CVEs