๐Ÿ” CVE Alert

CVE-2026-93616

CRITICAL 9.8

Directory Traversal and File upload allows execution of arbitrary script on the Management Server

CVSS Score
9.8
EPSS Score
0.0%
EPSS Percentile
0th

A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check Point Management Server.

CWE CWE-22
Vendor checkpoint
Product quantum security management
Published Sep 22, 2026
Last Updated Sep 22, 2026
Stay Ahead of the Next One

Get instant alerts for checkpoint quantum security management

Be the first to know when new critical vulnerabilities affecting checkpoint quantum security management are published โ€” delivered to Slack, Telegram or Discord.

Get Free Alerts โ†’ Free ยท No credit card ยท 60 sec setup

CVSS v3 Breakdown

CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
Scope
Unchanged
Confidentiality
High
Integrity
High
Availability
High

Affected Versions

checkpoint / Quantum Security Management
R82.20 with no Jumbo Hotfix R82.10 with Jumbo Hotfix Take 44 or below R82 with Jumbo Hotfix Take 126 or below R81.20 with Jumbo Hotfix Take 166 or below R81.10 (EOS) with Jumbo Hotfix Take 190 or below R81 (EOS) R80.40 (EOS) R80.30 (EOS) R80.20 (EOS) R80.10 (EOS) R80 (EOS)

References

NVD โ†— CVE.org โ†— EPSS Data โ†—
support.checkpoint.com: https://support.checkpoint.com/results/sk/sk1000171