Filtered by vendor Checkpoint Subscriptions
Filtered by product Spark Firewalls Subscriptions
Total 2 CVE
CVE Vendors Products Updated CVSS v3.1
CVE-2026-50752 1 Checkpoint 2 Quantum Security Gateway, Spark Firewalls 2026-06-09 7.4 High
A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.
CVE-2026-50751 1 Checkpoint 2 Quantum Security Gateway, Spark Firewalls 2026-06-09 9.3 Critical
A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.