CVE-2026-62144: exploitation status and patch state
CVE-2026-62144 · CVSS 9.1 CRITICAL · EPSS 21%
An authentication bypass vulnerability in Check Point Security Management and Multi-Domain Security Management allows an unauthenticated remote attacker to execute administrative commands on the Management Server. Successful exploitation may also allow command execution on managed Security Gateways. Exploitation requires network access to the Management Server without firewall protection or a configuration that does not restrict Trusted Clients.
Is CVE-2026-62144 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 21%.
Public exploit code: none found in monitored sources.
Which products and versions are affected?
No affected package list recorded here yet.
Is there a patch?
No patch identifier recorded here yet.
What PlainSec published about CVE-2026-62144
PlainSec has not published a story about this CVE.