Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
| Link | Providers |
|---|---|
| https://support.checkpoint.com/results/sk/sk184992 |
|
Tue, 02 Jun 2026 16:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 26 May 2026 15:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Checkpoint
Checkpoint quantum Security Management |
|
| Vendors & Products |
Checkpoint
Checkpoint quantum Security Management |
Tue, 26 May 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | When Compliance is enabled on Check Point Multi-Domain Management, an authenticated administrator with read-write access to one Management Domain (CMA) can modify stored metadata associated with Compliance Best Practices in another Management Domain, where the administrator has no access permissions, bypassing Role-Based Access Control (RBAC). | |
| Title | Authenticated Administrator Role-Based Access Control Bypass in Compliance | |
| Weaknesses | CWE-89 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: checkpoint
Published:
Updated: 2026-06-02T14:17:00.827Z
Reserved: 2026-05-20T19:29:00.635Z
Link: CVE-2026-48136
Updated: 2026-06-02T14:16:56.328Z
Status : Awaiting Analysis
Published: 2026-05-26T14:16:39.130
Modified: 2026-06-17T10:54:53.260
Link: CVE-2026-48136
No data.
OpenCVE Enrichment
Updated: 2026-06-18T13:15:15Z