Executive brief
A security flaw exists in the way certain Check Point VPN connections verify digital certificates when using the older IKEv1 protocol. This vulnerability could allow an attacker positioned between two offices to impersonate a legitimate site and bypass security checks. If exploited, the attacker could intercept, read, or modify sensitive data traveling through the encrypted tunnel, potentially compromising confidential business communications.
Technical details
This vulnerability is classified as improper certificate validation (CWE-295) within the deprecated IKEv1 key exchange logic. An unauthenticated attacker with a man-in-the-middle (MitM) network position can exploit this flaw to bypass certificate-based authentication in site-to-site VPN tunnels. The root cause is a failure in the validation logic that allows the attacker to present a certificate that is not properly verified against the expected identity. Successful exploitation grants the ability to decrypt or alter traffic traversing the VPN. Users are advised to migrate to IKEv2 or apply vendor-provided updates.
Affected products
- Check Point VPN site-to-site connections IKEv1 key exchange implementation
Timeline
- 2026-06-08: disclosed
- 2026-06-08: advisory