Vulnerability Intelligence Report
Stack overflow in login process to the Security Management and Log Servers
CVE-2026-91843
A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.
No Active Exploit Signals
CVSS Base Score
9.8
CRITICAL
Exploitability:3.9
Impact Score:5.9
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
—
Authentication
—
Weaponization
—
SSVC Action
—
Weaknesses (CWE)
CWE-121 ↗CWE-121: Stack-based Buffer Overflow.
Affected Products & Versions
| Vendor | Product | Affected Versions |
|---|---|---|
| checkpoint | Quantum Security Management | R82.10 with Jumbo Hotfix Take 44 or below (affected), R82 with Jumbo Hotfix Take 126 or below (affected), R81.20 with Jumbo Hotfix Take 166 or below (affected), R81.10 (EOS) with Jumbo Hotfix Take 190 or below (affected), R81 (EOS) (affected), R80.40 (EOS) (affected), R80.30 (EOS) (affected), R80.20 (EOS) (affected), R80.10 (EOS) (affected), R80 (EOS) (affected) |
References & Technical Advisories
No reference links found.
Threat Intelligence Signals
GitHub Advisory
Identity & Timeline
| Status | PUBLISHED |
| Assigning Authority | Check Point Software Ltd. · Vendor · Israel |
| Reserved | 2026-09-15T08:30:18 |
| Published | 2026-09-16T13:03:40 |
| Last Updated | 2026-09-17T11:39:25 |
Community Chatter & Buzz