type: cve · created: 2026-09-19 · updated: 2026-09-19 · tags: [cve] · confidence: medium · severity: critical · affected_sectors: [global] · au_impact: false
A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.
Tracked as CVE-2026-91843, the flaw lets an unprivileged, unauthenticated attacker gain root remote code execution in a low-complexity attack requiring no user interaction.
| Attribute | Detail |
|---|---|
| CVE | CVE-2026-91843 |
| CVSS | 9.8 (critical) |
| Vendor / product | Check Point — Security Management Server and Log Server |
| Reported | 2026-09-19 |