Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

Check Point Software Ltd.

First CVE: May 11, 1998Active for: 28 yearsTotal CVEs: 133
67.3
VTI Score
TOP TARGET

Check Point Software Ltd. develops widely deployed security infrastructure spanning firewalls, endpoint protection, and VPN solutions that occupy critical positions in network perimeters and access control worldwide. The vendor's vulnerability disclosures are moderate in volume but include a prominent tendency toward public exploit availability, reflecting the high visibility and attacker interest in security appliances. The recurring exposure concentrates in flagship products such as Firewall-1 and VPN-1, with a notable pattern of weaknesses in resource-permission assignment, process control, and symlink/path-traversal issues characteristic of systems that require elevated privileges and manage sensitive access pathways. Defenders should prioritize Check Point advisories for internet-facing and critical-path deployments; current exploitation activity and severity figures are shown alongside this summary.

FAUCET AI Generated
133
Total CVEs
More Total CVEs than 99% of tracked vendors
0.1
Avg CVEs / Product / Year
Bottom 1%
6.7
Avg CVSS Score
Higher Avg CVSS Score than 44% of tracked vendors
3.8%
In CISA KEV
Higher KEV Rate than 99% of tracked vendors

Trends Over Time

The number and severity of CVEs published that impact products developed by Check Point Software Ltd. over time

Volume of CVEsAvg CVSS Base Score
First CVE
May 11, 1998
28 years ago
Most Recent CVE
Jul 22, 2026
2 days ago

Self-Reporting Analysis

Of all the CVEs published by Check Point Software Ltd. as a CNA, 43.2% affect products that Check Point Software Ltd. develops as a vendor.

43.2%
56.8%
Self-reported: 48 (43.2%)
Third-party: 63 (56.8%)

Of all the CVEs published that affect products developed by Check Point Software Ltd., 36.1% are self-published by Check Point Software Ltd. as a CNA.

36.1%
63.9%
Self-published: 48 (36.1%)
Other CNAs: 85 (63.9%)

Products(96 total)

Top CVEs

Signals from CVEs in this vendor scope (133 CVEs).

133 CVEs · Highest risk first

CVEPublishedCVSSRiskKEVExploit
CVE-2014-6271CRITICAL
GNU Bash through 4.3 processes trailing strings after function definitions in the values of environment variables, which allows remote attackers to execute arbitrary code via a cra
Sep 24, 20149.899YESYES
CVE-2026-50751CRITICAL
A logic flow weakness in Remote Access and Mobile Access certificate validation in deprecated IKEv1 key exchange allows an unauthenticated remote attacker to bypass user authentica
Jun 8, 20269.398YESYES
CVE-2024-24919HIGH
Potentially allowing an attacker to read certain information on Check Point Security Gateways once connected to the internet and enabled with remote Access VPN or Mobile Access Sof
May 28, 20248.698YESYES
CVE-2014-7169CRITICAL
GNU Bash through 4.3 bash43-025 processes trailing strings after certain malformed function definitions in the values of environment variables, which allows remote attackers to wri
Sep 25, 20149.898YESYES
CVE-2026-16232CRITICAL
An authentication bypass vulnerability in the Check Point SmartConsole login process allows an unauthenticated remote attacker to obtain an application login token and use it to au
Jul 22, 20269.182YESNO
CVE-2021-3449MEDIUM
An OpenSSL TLS server may crash if sent a maliciously crafted renegotiation ClientHello message from a client. If a TLSv1.2 renegotiation ClientHello omits the signature_algorithms
Mar 25, 20215.957NONO
CVE-2002-1623MEDIUM
The design of the Internet Key Exchange (IKE) protocol, when using Aggressive Mode for shared secret authentication, does not encrypt initiator or responder identities during negot
Dec 31, 20025.041NONO
CVE-2009-1227HIGH
NOTE: this issue has been disputed by the vendor. Buffer overflow in the PKI Web Service in Check Point Firewall-1 PKI Web Service allows remote attackers to cause a denial of ser
Apr 2, 200910.039NOYES
CVE-2021-30358HIGH
Mobile Access Portal Native Applications who's path is defined by the administrator with environment variables may run applications from other locations by the Mobile Access Portal
Oct 19, 20217.235NONO
CVE-2019-8452HIGH
A hard-link created from log file archive of Check Point ZoneAlarm up to 15.4.062 or Check Point Endpoint Security client for Windows before E80.96 to any file on the system will g
Apr 22, 20197.835NOYES
View all 133 CVEs →

CVE Severity & Scoring

Severity distribution of CVEs that affect this vendor's products133 CVEs
38%
53%
Severity distribution among all CVEs352,294 CVEs
45%
40%
11%
LowMediumHighCritical
Attack Vector
Local28 (21.1%)
Network26 (19.5%)
Unknown77 (57.9%)
Physical0 (0.0%)
Adjacent Network2 (1.5%)
Attack Complexity
Low51 (38.3%)
High5 (3.8%)
Unknown77 (57.9%)
User Interaction
None49 (36.8%)
Unknown77 (57.9%)
Required7 (5.3%)
Privileges Required
Low26 (19.5%)
High9 (6.8%)
None21 (15.8%)
Unknown77 (57.9%)

Exploit Exposure

Signals from CVEs in this vendor scope (133 CVEs).

CISA KEV
5 CVEs
3.8% of CVEs· 99th percentile
Metasploit
2 CVEs
1.5% of CVEs· 97th percentile
Nuclei
3 CVEs
2.3% of CVEs· 95th percentile
ExploitDB
16 CVEs
12.0% of CVEs· 76th percentile

Social Chatter

An overview of all social media posts that mention a CVE ID that affects a product developed by Check Point Software Ltd..

Media Mentions

Media articles that mention a CVE ID that affects a product developed by Check Point Software Ltd. — matched by CVE ID, not by vendor name.

Top CNAs Publishing CVEs For Check Point Software Ltd.'s Products

View all 5 CNAs →

Top CWEs