[{"data":1,"prerenderedAt":-1},["ShallowReactive",2],{"repo-stars":3,"vuln-CVE-2026-93616":6},{"stargazers_count":4,"fetched_at":5},8,"2026-09-22T20:42:13.886Z",{"id":7,"descriptions":8,"cisa":9,"weaknesses":10,"exploits":40,"aliases":41,"duplicate_of":9,"upstream":42,"downstream":43,"duplicates":44,"related":45,"reserved_at":9,"published_at":46,"modified_at":47,"state":48,"summary":49,"references_raw":58,"kevs":74,"epss":9,"epss_history":85,"metrics":86,"affected":93},"CVE-2026-93616","A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check Point Management Server.",null,[11],{"_key":12,"id":12,"name":13,"description":14,"type":15,"status":16,"abstraction":17,"likelihood_of_exploit":18,"capec":19},"CWE-22","Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')","The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.","weakness","Stable","Base","High",[20,24,28,32,36],{"id":21,"name":22,"techniques":23},"CAPEC-126","Path Traversal",[],{"id":25,"name":26,"techniques":27},"CAPEC-64","Using Slashes and URL Encoding Combined to Bypass Validation Logic",[],{"id":29,"name":30,"techniques":31},"CAPEC-76","Manipulating Web Input to File System Calls",[],{"id":33,"name":34,"techniques":35},"CAPEC-78","Using Escaped Slashes in Alternate Encoding",[],{"id":37,"name":38,"techniques":39},"CAPEC-79","Using Slashes in Alternate Encoding",[],[],[],[],[],[],[],"2026-09-22T12:59:01.057Z","2026-09-22T19:58:24.103Z","Awaiting Analysis",{"cisa_kev":50,"cisa_ransomware":51,"cisa_vendor":52,"epss_severity":9,"epss_score":9,"severity":53,"severity_score":54,"severity_version":55,"severity_source":56,"severity_vector":57,"severity_status":48},true,false,"Check Point","critical",9.8,"v3.1","cve.org","CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",[59,64,69],{"url":60,"sources":61,"tags":63},"https://support.checkpoint.com/results/sk/sk1000171",[56,62],"nvd",[],{"url":65,"sources":66,"tags":67},"https://blog.checkpoint.com/security/security-advisory-action-required-active-exploitation-of-cve-2026-85102-and-a-management-pre-authentication-vulnerability-cve-2026-93616/",[56,62],[68],"Vendor Advisory",{"url":70,"sources":71,"tags":72},"https://www.cisa.gov/known-exploited-vulnerabilities-catalog?field_cve=CVE-2026-93616",[56,62],[73],"Government Resource",[75],{"source":76,"vendor":52,"product":77,"date_added":78,"vulnerability_name":79,"short_description":80,"required_action":81,"due_date":82,"known_ransomware_campaign_use":83,"notes":84,"exploitation_type":9},"cisa","Multiple Products","2026-09-22","Check Point Multiple Products Path Traversal Vulnerability","Check Point Security Management Server, Multi-Domain Security Management Server, Log Server, Multi-Domain Log Server, and SmartEvent contain a path traversal vulnerability that allows an unauthenticated attacker to upload and execute arbitrary scripts.","Apply mitigations in accordance with vendor instructions, ensuring compliance with CISA’s BOD 26-04 Prioritizing Security Updates Based on Risk (see URL in Notes) guidance and CISA’s “Forensics Triage Requirements” (see URL in Notes). Follow applicable BOD 26-04 guidance for cloud services or discontinue use of the product if mitigations are unavailable. Stakeholders are responsible for evaluating each asset's internet exposure and ensuring adherence to BOD 26-04 patching guidelines.","2026-09-25","Unknown","https://support.checkpoint.com/results/sk/sk1000171/ ; ; BOD 26-04: https://www.cisa.gov/news-events/directives/bod-26-04-prioritizing-security-updates-based-risk ; Forensics Triage Requirements: https://www.cisa.gov/news-events/directives/bod-26-04-implementation-guidance-prioritizing-security-updates-based-risk ; https://nvd.nist.gov/vuln/detail/CVE-2026-93616",[],[87,91],{"source":56,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":88,"cvss_v4_0":9},{"baseScore":54,"baseSeverity":89,"vectorString":57,"impactScore":54,"exploitabilityScore":90},"CRITICAL",10,{"source":62,"cvss_v2_0":9,"cvss_v3_0":9,"cvss_v3_1":92,"cvss_v4_0":9},{"baseScore":54,"baseSeverity":89,"vectorString":57,"impactScore":54,"exploitabilityScore":90},[94],{"ecosystem":9,"name":95,"vendor":96,"product":97,"cpe_part":98,"purl_type":9,"purl_namespace":9,"purl_name":9,"source":9,"versions":99},"Quantum Security Management","checkpoint","quantum security management","a",[100,103,105,107,109,111,113,115,117,119,121],{"version":101,"is_range":51,"range_type":56,"version_start":101,"version_start_type":102,"version_end":101,"version_end_type":102,"fixed_in":9},"R82.20 with no Jumbo Hotfix","including",{"version":104,"is_range":51,"range_type":56,"version_start":104,"version_start_type":102,"version_end":104,"version_end_type":102,"fixed_in":9},"R82.10 with Jumbo Hotfix Take 44 or below",{"version":106,"is_range":51,"range_type":56,"version_start":106,"version_start_type":102,"version_end":106,"version_end_type":102,"fixed_in":9},"R82 with Jumbo Hotfix Take 126 or below",{"version":108,"is_range":51,"range_type":56,"version_start":108,"version_start_type":102,"version_end":108,"version_end_type":102,"fixed_in":9},"R81.20 with Jumbo Hotfix Take 166 or below",{"version":110,"is_range":51,"range_type":56,"version_start":110,"version_start_type":102,"version_end":110,"version_end_type":102,"fixed_in":9},"R81.10 (EOS) with Jumbo Hotfix Take 190 or below",{"version":112,"is_range":51,"range_type":56,"version_start":112,"version_start_type":102,"version_end":112,"version_end_type":102,"fixed_in":9},"R81 (EOS)",{"version":114,"is_range":51,"range_type":56,"version_start":114,"version_start_type":102,"version_end":114,"version_end_type":102,"fixed_in":9},"R80.40 (EOS)",{"version":116,"is_range":51,"range_type":56,"version_start":116,"version_start_type":102,"version_end":116,"version_end_type":102,"fixed_in":9},"R80.30 (EOS)",{"version":118,"is_range":51,"range_type":56,"version_start":118,"version_start_type":102,"version_end":118,"version_end_type":102,"fixed_in":9},"R80.20 (EOS)",{"version":120,"is_range":51,"range_type":56,"version_start":120,"version_start_type":102,"version_end":120,"version_end_type":102,"fixed_in":9},"R80.10 (EOS)",{"version":122,"is_range":51,"range_type":56,"version_start":122,"version_start_type":102,"version_end":122,"version_end_type":102,"fixed_in":9},"R80 (EOS)"]