Check Point Patches Actively Exploited Management Server Zero-Day
Emergency hotfixes address a critical flaw that allowed attackers to run arbitrary scripts on Security Management Servers.
Check Point has released emergency hotfixes for a critical zero-day vulnerability in its Security Management Server. The flaw is already being exploited in attacks, and successful exploitation could allow an attacker to run arbitrary scripts on the server.
The company warned customers about active exploitation and made the hotfixes available to address the issue. The vulnerability is rated critical, though the initial advisory provides limited technical detail.
Organizations running Check Point Security Management Servers should apply the hotfixes as soon as possible, as arbitrary script execution on a management server could lead to broader compromise of the security infrastructure.
Sources · 2
More in Security & Privacy
Canada Probes IDScan After Breach of 153M Driver's Licenses
Privacy Commissioner opens investigation into IDScan.net's security practices and breach notifications after stolen ID scans of 153 million people appeared on the dark web.
AI Relay Servers Mask Chinese Access to US Frontier Models
More than 80,000 AI relay servers are helping users in China hide their identities while accessing cutting-edge US AI models, likely to clone them.
Sweden Fines Miljödata $183,000 for Breach Affecting 2.2 Million
Sweden's privacy regulator penalized IT provider Miljödata for security failures linked to a breach that exposed 2.2 million people's data.
Rogue External MFA Providers Can Steal Passwords in Login Attacks
Researchers show that attackers with privileged access can register a malicious external MFA provider that harvests passwords during otherwise legitimate logins.