GHSA-jqxh-x9f5-wcgw · Severity: critical — A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated...
A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.
Conclusion & alert: CVE-2026-50751 is rated Critical Active Threat (90.1/100): CVSS Critical severity, with high exploitation likelihood (EPSS 11.84%, 94th percentile). Core evidence: CISA KEV confirms active exploitation (added 2026-06-08) affecting Check Point / Security Gateway. an authentication bypass (CWE-287) Unauthenticated remote administrative access may be possible. Mandatory action: The CISA remediation deadline has passed—treat as an emergency patch priority.
Risk is dynamic; we continuously reassess and refresh what is shown on this page as upstream context changes.
: Check Point Security Gateway Improper Authentication Vulnerability · CISA KEV detail
: 2026-06-08
: 2026-06-11
: Apply mitigations per vendor instructions, follow applicable BOD 22-01 guidance for cloud services, or discontinue use of the product if mitigations are unavailable.
EPSS lead: Daily EPSS estimates relative likelihood of exploitation; percentile ranks this CVE among scored vulnerabilities (higher = more severe relative rank).
| # | Date | Old EPSS score | New EPSS score | Delta (New - Old) |
|---|---|---|---|---|
| 1 | 2026-06-10 | 17.69% | 11.84% | -5.85% |
| 2 | 2026-06-09 | 0.01% | 17.69% | +17.68% |
| 3 | 2026-06-08 | — | 0.01% | — |
Full EPSS history (3 records total)
CVSS metrics for this CVE.
| Base score | Version | Severity | Vector | Exploitability | Impact | Score source |
|---|---|---|---|---|---|---|
| 9.3 | 3.1 | CRITICAL |
|
3.9 | 4.7 | 134c704f-9b21-4f2e-91b3-4a467353bcc0 |
GHSA-jqxh-x9f5-wcgw · Severity: critical — A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated...
| Vendor | Product | Version | Raw CPE |
|---|---|---|---|
| checkpoint | gaia_os | >= r80.40, < r81.20 | cpe:2.3:o:checkpoint:gaia_os:*:*:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:-:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_10:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_101:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_103:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_105:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_111:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_113:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_115:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_118:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_119:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_120:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_122:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_126:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_127:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_14:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_141:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_24:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_26:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_38:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_41:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_43:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_45:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_53:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_54:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_65:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_70:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_76:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_79:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_8:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_84:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_89:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_90:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_92:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_96:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_98:*:*:*:*:*:* |
| checkpoint | gaia_os | r81.20 | cpe:2.3:o:checkpoint:gaia_os:r81.20:take_99:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:-:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_10:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_103:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_12:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_14:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_18:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_19:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_25:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_33:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_34:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_36:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_39:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_41:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_43:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_44:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_60:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_73:*:*:*:*:*:* |
| checkpoint | gaia_os | r82 | cpe:2.3:o:checkpoint:gaia_os:r82:take_91:*:*:*:*:*:* |
| checkpoint | gaia_os | r82.10 | cpe:2.3:o:checkpoint:gaia_os:r82.10:-:*:*:*:*:*:* |
| checkpoint | gaia_os | r82.10 | cpe:2.3:o:checkpoint:gaia_os:r82.10:take_19:*:*:*:*:*:* |
| checkpoint | gaia_os | r82.10 | cpe:2.3:o:checkpoint:gaia_os:r82.10:take_6:*:*:*:*:*:* |
| checkpoint | gaia_embedded | >= r80.20.00, < r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:*:*:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:-:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:build_996004508:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:build_996004620:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:build_996004653:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:build_996004721:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r81.10.17 | cpe:2.3:o:checkpoint:gaia_embedded:r81.10.17:build_996004892:*:*:*:*:*:* |
| checkpoint | gaia_embedded | >= r80.20.00, < r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:*:*:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:-:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998001559:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998001562:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998002110:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998002112:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998002133:*:*:*:*:*:* |
| checkpoint | gaia_embedded | r82.00.10 | cpe:2.3:o:checkpoint:gaia_embedded:r82.00.10:build_998002203:*:*:*:*:*:* |
| URL | Tags |
|---|---|
| https://support.checkpoint.com/results/sk/sk185033 | Mitigation Patch Vendor Advisory |
| https://blog.checkpoint.com/security/check-point-releases-important-hotfix-for-vulnerabilities-in-deprecated-ikev1-vpn-protocol/ | Vendor Advisory |
| https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-50751 | US Government Resource |