Exploited in the wild Check Point Security Management Server zero-day Check Point Spark Firewalls Check Point rce
Check Point Warns of Management Server Zero-Day Exploited in Targeted Attacks
CVE Tools coverage
Check Point says CVE-2026-93616 was used in targeted attacks against its Security Management Server on July 23. The path traversal vulnerability can let an unauthenticated attacker upload and execute scripts through the server's web service, so administrators should apply the fixes in sk1000171 and investigate for prior compromise. The company also reported exploitation attempts against CVE-2026-85102 on Check Point Spark Firewalls, a VPN certificate-validation flaw fixed on September 9.