CVE-2026-62145
Received Received - Intake

Authenticated Command Execution in Check Point Gaia Portal

Vulnerability report for CVE-2026-62145, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-07-22

Last updated on: 2026-07-22

Assigner: Check Point Software Technologies Ltd.

Description

A vulnerability in Check Point Gaia Portal allows an authenticated attacker with read-only Gaia Portal privileges to execute commands with root privileges.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-07-22
Last Modified
2026-07-22
Generated
2026-07-22
AI Q&A
2026-07-22
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 11 associated CPEs
Vendor Product Version / Range
check_point gaia_portal *
checkpoint gaia_portal R77.30
checkpoint gaia_portal R80
checkpoint gaia_portal R80.10
checkpoint gaia_portal R80.20
checkpoint gaia_portal R80.30
checkpoint gaia_portal R81
checkpoint gaia_portal R81.10
checkpoint gaia_portal R81.20
checkpoint gaia_portal R82
checkpoint gaia_portal R82.10

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-269 The product does not properly assign, modify, track, or check privileges for an actor, creating an unintended sphere of control for that actor.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

CVE-2026-62145 is a local privilege escalation vulnerability in Check Point Gaia Portal. It allows an authenticated attacker with read-only access to execute commands as the root user, bypassing normal restrictions.

Detection Guidance

To detect this vulnerability, check if your Check Point Gaia Portal is running an affected version (R77.30, R80, R80.10, R80.20, R80.30, R81, R81.10, R81.20, R82, R82.10). Verify if unauthorized root-level commands are being executed by monitoring system logs for unexpected privilege escalations.

Impact Analysis

An attacker could gain full control over the affected system, install malware, steal data, or disrupt operations. Even with limited access, they could escalate privileges to root and perform unauthorized actions.

Compliance Impact

This vulnerability could lead to unauthorized access to sensitive data, violating GDPR and HIPAA requirements for data protection and access controls. Non-compliance may result in legal penalties and reputational damage.

Mitigation Strategies

Restrict admin access to Gaia OS via Gateway and Management Hardening Best Practices. Limit access to trusted hosts or subnets in Gaia Portal under System Management > Host Access > Allowed Hosts. Enable Multi-Factor Authentication (MFA) for administrators under User Management > Authentication. Apply specific Jumbo Hotfix Accumulators: Take 36 for R82.10, Take 118 for R82, and Take 158 for R81.20.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-62145. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart