CVE-2026-85102: Improper Certificate Validation in Quantum Security Gateway
Published Sep 9, 2026
·Updated
Improper certificate trust validation during VPN negotiation in Check Point Quantum Security Gateway may allow an unauthenticated remote attacker to execute arbitrary code on the Gateway.
Affected Software
1 affected component
Check Point Quantum Security Gateway
Event History
Sep 9, 2026
CVE Published
via MITRE·01:00 PM
Data Sourced
via MITRE·01:00 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An unauthenticated remote attacker may be able to exploit the issue during VPN negotiation. No user interaction or prior privileges are required according to the provided severity vector.
2
What security impact could successful exploitation have?
Successful exploitation may allow arbitrary code execution on the Check Point Quantum Security Gateway. The severity vector indicates potential high impact to confidentiality, integrity, and availability.