VYPR

SmartConsole

by Checkpoint

CVEs (4)

  • CVE-2026-16232CriKEVJul 22, 2026
    risk 0.81cvss 9.8epss 0.73

    An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to authenticate with full administrative privileges. Successful exploitation allows the attacker to…

  • CVE-2020-6024HigJan 20, 2021
    risk 0.51cvss 7.8epss 0.00

    Check Point SmartConsole before R80.10 Build 185, R80.20 Build 119, R80.30 before Build 94, R80.40 before Build 415, and R81 before Build 548 were vulnerable to a possible local privilege escalation due to running executables from a directory with write access to all…

  • CVE-2024-24916MedJun 19, 2025
    risk 0.42cvss 6.5epss 0.02

    Untrusted DLLs in the installer's directory may be loaded and executed, leading to potentially arbitrary code execution with the installer's privileges (admin).

  • CVE-2024-24915MedJun 29, 2025
    risk 0.40cvss 6.1epss 0.00

    Credentials are not cleared from memory after being used. A user with Administrator permissions can execute memory dump for SmartConsole process and fetch them.