EudorIACyber Intelligence
Operational monitoring Newsletter IT EN
← Back to intelligence
Technical advisory

Check Point предупредува дека хакери ја искористуваат RCE ранливоста во VPN на Security Gateway

Official source
EudorIA operational summary

What it means

Priority 95/100

Check Point ha rilevato un'attacco attivo sfruttando la vulnerabilità RCE CVE-2026-85102 nel Security Gateway, con attività malevole iniziata il 12 settembre 2026. La vulnerabilità CVE-2026-93616 è un zero-day utilizzato da attaccanti per eseguire script e caricare classi Java. La patch è disponibile, ma la mitigazione richiede configurazioni specifiche.

Why it matters

Le PMI italiane potrebbero subire attacchi critici se non applicano le patch e le misure di mitigazione. La vulnerabilità consente esecuzione remota di codice, minacciando la sicurezza e la continuità operativa.

Potential operational benefits

  • Riduzione della superficie esposta alle vulnerabilità
  • Limitazione degli accessi non autorizzati al servizio di gestione
  • Miglioramento della visibilità e del controllo sul traffico di rete
  • Prevenzione di attacchi di tipo RCE e zero-day
Indications to confirm against the customer's technical and organisational perimeter.
Relevant controlsPatch managementSegmentazione di reteFirewall NGFW / IPSMonitoraggio / SIEMEDR / XDR
AudienceITSOCCISO
Information centre

Translation in progress

MKD-CIRT

The official content is available in the original language. The Italian version will be published once automated checks are complete.

Text acquired from the source

Компанијата за сајбер-безбедност Check Point потврди активна експлоатација на CVE-2026-85102, ранливост за далечинско извршување код (RCE) пред автентикација, која се наоѓа во функционалноста за обработка на VPN сертификати кај нејзиниот производ Security Gateway. Истото безбедносно известување предупредува и на актерите на закани кои ја искористуваат ранливоста од типот Path Traversal пред автентикација означена како CVE-2026-93616. […] The post Check Point предупредува дека хакери ја искористуваат RCE ранливоста во VPN на Security Gateway appeared first on MKD-CIRT | Национален центар за одговор на компјутерски инциденти .

Source
MKD-CIRT Macedonia del Nord
Publishing entity
MKD-CIRT
Entity type
National CSIRT
Area
Europe · MK
Original language
mk · translation in preparation
Publication
24/09/2026 11:25
MITRE ATT&CK
T1190, T1078, T1486
CVE
CVE-2026-85102, CVE-2026-93616
Stated country
MK
Technical scope

Affected products and versions

Verification in progress
Information not yet acquired.

The collector will check NVD and the available official vendor advisories.

Open the original source