← back
CVE-2026-93616criticalunder attackCWE-22

Directory Traversal and File upload allows execution of arbitrary script on the Management Server

78Vexday Risk Score

Prioritize patching. It under exploitation confirmed by CISA and has a public proof of concept.

ssvc Actcvss 9.8epss 2.4%
from disclosure to weapon0 days
Published on NVDSep 22
1st PoCSep 22
CISA KEVSep 22
exploitation probability
2.4%top 17% of all CVEs
observed exploitation
yesCISA + VulnCheck
2 public exploit(s)
Action required by CISAfederal deadline: 2026-09-25

Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.

In short

An attacker can bypass security checks to upload and run harmful scripts on Check Point's management server without needing a password. This is critical because the management server controls all security policies.

Technical detail

Unauthenticated directory traversal combined with arbitrary file upload enables remote code execution on the Management Server. The vulnerability allows attackers to traverse directory restrictions and upload malicious scripts that execute with server privileges, bypassing authentication requirements entirely.

Summary generated and translated by AI from the official description.
A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check Point Management Server.
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.