Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent

Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent
The Dutch NCSC is warning that two critical Check Point VPN flaws, CVE-2026-85102 and CVE-2026-85103, are likely to be exploited soon, with attackers potentially gaining remote code execution and full system control. Organizations using affected Check Point releases are urged to apply the available fixes immediately and restrict Site-to-Site VPN access to trusted IP addresses. #CheckPointVPN #CVE-2026-85102 #CVE-2026-85103 #NCSC #CheckPoint

Keypoints

  • NCSC warns that exploitation of two Check Point VPN flaws is expected soon.
  • CVE-2026-85102 can allow arbitrary code execution through improper certificate validation.
  • CVE-2026-85103 is a heap overflow that may enable remote code execution on gateways and management servers.
  • Multiple Check Point releases are affected, including R81.20, R82, R82.10, and several end-of-support versions.
  • Check Point released fixes, and administrators should patch immediately and limit VPN access rules.

Read More: https://www.bleepingcomputer.com/news/security/dutch-ncsc-critical-check-point-vpn-flaws-exploitation-is-imminent/