CVE-2026-93616
Directory Traversal and File upload allows execution of arbitrary script on the Management Server
- Published
- Sep 22, 2026
- Updated
- Sep 23, 2026
- Assigning CNA
- checkpoint
- Evidence observed
- Sep 22, 2026
Directory Traversal and File upload allows execution of arbitrary script on the Management Server
nvd · CVSS 3.1
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:HThis CVE appears in the CISA Known Exploited Vulnerabilities catalog.
A directory traversal and file upload vulnerability allows an unauthenticated attacker to upload and execute arbitrary scripts on Check Point Management Server.
Proof-of-concept repository for CVE-2026-93616, providing exploit code and technical details for vulnerability reproduction and security research.
Shell and SmartDashboard scripts that check Check Point management servers for indicators of compromise tied to CVE-2026-93616, including rogue Python scripts, login attempts, and suspicious IPs.
Use vulnerability information only on systems you own or are authorized to test. Kitploit links to public research metadata and does not store exploit code or malicious payloads.