New Check Point Zero-Day Vulnerability Exploited in the Wild
Reported exploitedSecurity ManagementMulti-Domain ManagementOur summary
A critical zero-day vulnerability in Check Point's products has been actively exploited in the wild. CVE-2026-16232 impacts Security Management and Multi-Domain Management, enabling attackers to bypass authentication and gain full administrative control through SmartConsole. The flaw was confirmed by Check Point, which reported that only a limited number of customers with exposed management interfaces were affected. Patches and IoCs are available, and CISA added the flaw to its KEV catalog, urging immediate remediation.
SecurityWeek publishes this story on its own site; we link to it rather than reprint it.
Worried this affects your company?
Discuss a security assessment of your internet-facing systems. Scope agreed before testing.