CVE-2026-50751
A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentication and establish a remote access VPN connection without a valid user password.
- Affected products
- Check Point Gaia, Check Point Vpn
- Checkpoint Gaia Os
- < r81.20, R82, r82.10
- CVSS 3.1
- 9.3 CRITICAL
- EPSS
- 82.6% (100th percentile)
- Weakness
- CWE-287
- NVD status
- Analyzed
- Published
- 2026-06-08
CVE-2026-50751 at NVD
6 known exploits for CVE-2026-50751
Proof-of-concept code and exploit modules indexed by Sploitus