CVE-2026-85103
Known Exploited Vulnerability Entry ENISA
Entry Details
Confirmed Exploited2026-09-25 02:00 CEST
Timestamps
2026-09-25
2026-09-25
Scope
Affected: Check Point / Quantum Security Gateway, Quantum Security Management | Description: CVE-2026-85103 is a heap-based buffer overflow in ASN.1 certificate decoding that may allow an unauthenticated remote attacker to execute arbitrary code on Check Point Quantum Security Gateway and Security Management systems. | Patched since: 2026/09/07 | Exploitation type: unknown | CWEs: CWE-122 | Origin source: CNW | Notes: https://support.checkpoint.com/results/sk/sk1000118
References
- {'id': 'CVE-2026-85103', 'url': 'https://www.cve.org/CVERecord?id=CVE-2026-85103'}
- {'id': 'EUVD-2026-75010', 'url': 'https://euvd.enisa.europa.eu/vulnerability/EUVD-2026-75010'}
- {'id': 'source', 'url': 'https://support.checkpoint.com/results/sk/sk1000118'}
232d7698-7242-4227-be02-e8cb1ab72aed
ENISA
cce329bf-df49-4c6e-a027-80be2e6483bd
2026-10-08 06:37 CEST
2026-10-08 06:37 CEST
Evidence
1| Type | Source | Signal | Confidence | Details | GCVE Metadata |
|---|---|---|---|---|---|
| csirt_report | enisa-cnw-kev | successful_exploitation | 0.75 |
View details
|
- |