Patching Check Point VPN flaws: prioritized plan for CVE-2026-85102 and CVE-2026-85103
CERT-In warned about two critical Check Point VPN vulnerabilities (CVE-2026-85102 and CVE-2026-85103): an unauthenticated attacker can execute code via a forged certificate. Patches are in articles sk1000117 and sk1000118; unsupported versions R80–R81.10 require migration.
- Vulnerable: R81.20, R82, R82.10, R81.10.x, R82.00.x, and R80–R81.10
- R82.20 is not affected
- Attack requires no credentials—just a forged certificate
- For unsupported versions, the only path is migration
Read next
Security