CVE-2026-48136
MEDIUMCVSS 4.1/10EPSS 4.10%
Last modified
This CVE is reserved or awaiting analysis. Details will appear once published by NVD.
Description
When Compliance is enabled on Check Point Multi-Domain Management, an authenticated administrator with read-write access to one Management Domain (CMA) can modify stored metadata associated with Compliance Best Practices in another Management Domain, where the administrator has no access permissions, bypassing Role-Based Access Control (RBAC).
Metrics
CVSS:3.1/AV:N/AC:H/PR:H/UI:N/S:U/C:L/I:L/A:L
Weakness Enumeration
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Are you affected by CVE-2026-48136?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
