Check Point VPN CVE-2026-85102: R81.20–R82.10 affected, 1,852 exposed instances
CERT-In rates CVE-2026-85102 and CVE-2026-85103 as critical in Check Point Security Gateway, Security Management Server and Spark Firewall: improper certificate validation and a heap overflow during pre-authentication VPN certificate processing. Affected branches include R81.20, R82, R82.10, R81.10.x, R82.00.x and end-of-support R80–R81.10; R82.20 is not affected. ZoomEye shows 1,852 Check Point VPN instances.
- CVE-2026-85102 and CVE-2026-85103 rated critical, exploitable before authentication
- Affected products: Security Gateway, Security Management Server, Spark Firewall
- Affected versions: R81.20, R82, R82.10, R81.10.x, R82.00.x and R80–R81.10
- ZoomEye: 1,852 Check Point VPN instances, CVE query returned zero
Read next
Security