CVE-2026-85102: Check Point Multiple Products
Site VPN 또는 Remote Access VPN을 사용하여 Point Security Gateway 및 Check Point Spark Firewall을 확인하면 게이트웨이의 임의 코드를 실행할 수 없는 원격 공격자를 허용할 수 있는 임의 인증서 검증 취약점을 포함합니다.
CISA (English)
Check Point Security Gateway and Check Point Spark Firewall using Site to Site VPN or Remote Access VPN contain an improper certificate validation vulnerability which could allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
- 공급업체
- Check Point
- 제품
- Multiple Products
- 취약점
- Check Point Multiple Products Improper Certificate Validation Vulnerability
- 추가일
- 2026. 9. 22.
- CISA 조치 기한(미국 연방기관)
- 2026. 9. 25.
- 랜섬웨어 공격 악용
- 알 수 없음
- 약점(CWE)
- CWE-295
참고 자료
이 사이트는 정보 제공 목적으로 CISA 카탈로그를 요약한 것이며 보안 조언이 아닙니다. 공급업체 안내와 공식 권고를 따르세요.
최종 업데이트: · 카탈로그 버전 2026.10.02