MobbleOpen in Mobble ⇢
Technology · Cybersecurity · published 2026-09-12 · via BleepingComputer

Dutch agency warns of imminent attacks on Check Point VPN vulnerabilities

Image via BleepingComputer
Image via BleepingComputer

The Dutch National Cyber Security Centre has issued an urgent warning about two critical flaws in Check Point VPN products, predicting exploitation attempts in the near term. The vulnerabilities, tracked as CVE-2026-85102 and CVE-2026-85103, could allow remote code execution on Security Gateways and Management Servers. Administrators are advised to apply the available patches immediately and restrict VPN access to trusted IP addresses where possible.

Expanded Detail

The two vulnerabilities affect a broad range of Check Point releases, including versions that have reached end-of-support status, meaning some organizations may need to upgrade rather than simply patch. Check Point has distributed fixes through multiple channels, with LivePatch covering newer releases and Jumbo Hotfix Accumulators for others, while the R82.20 version remains unaffected.

The NCSC's warning arrives despite no public proof-of-concept being available, reflecting the agency's assessment that the flaws' severity and the value of VPN infrastructure as an attack target make exploitation highly probable. Administrators using Site-to-Site VPN are advised to restrict access to trusted IP addresses as an interim measure while patches are deployed.

Context

Organizations relying on Check Point VPN for remote workforce connectivity could face significant operational disruption if these flaws are exploited, potentially exposing confidential data or enabling full system takeovers. Government agencies, enterprises, and managed service providers using affected versions may be particularly vulnerable, especially those still running end-of-support releases. The broader impact could extend to employees and customers whose personal information resides on compromised networks. While patches are available, the window between warning and exploitation may be narrow, and organizations without robust update processes could find themselves exposed.

Expanded detail and Context are AI-generated analysis; the linked article remains the authoritative source.
Read the full article at BleepingComputer →
Related stories
SAP Patches Critical Kernel Flaw Allowing Remote Code Execution · Cybersecurity
Ransomware Gangs Join Attacks on Unpatched WatchGuard Fireboxes · Cybersecurity
Cisco warns of active exploitation of critical firewall management flaw · Cybersecurity
Tens of thousands of internet-facing Plex servers still lack fixes for known security bugs · Cybersecurity
This summary is Al-enhanced to contain extended analysis and broader social context. The original is {NAME); the linked article is the authoritative source. Original headline: “Dutch NCSC: Critical Check Point VPN flaws exploitation is imminent.” Browse more stories.