Check Point, Kaspersky, Tanium Patch Product Vulnerabilities

https://www.securityweek.com/wp-content/uploads/2025/05/firewall.jpeg

Cybersecurity firms Check Point, Kaspersky, and Tanium have each patched severe vulnerabilities in their products, including ones that can be exploited for remote code execution.

Check Point has informed customers about a critical vulnerability affecting Security Management and Log Server products.

The flaw, CVE-2026-91843, can be exploited by an unauthenticated attacker “to remotely execute arbitrary code with root privileges through the login process.”

Threat actors appear to have set their sights on vulnerabilities in Check Point products in recent months, including zero-days. However, for CVE-2026-91843 the vendor noted that there is no evidence of in-the-wild exploitation. Nevertheless, it has shared some potential indicators of compromise (IoCs).

Check Point has advised customers who don’t have automatic updates enabled to immediately patch their installations.

Tanium published five new advisories this week to inform customers about high- and medium-severity vulnerabilities.

Advertisement. Scroll to continue reading.

In Tanium Asset, the company fixed...

Copyright of this story solely belongs to www.securityweek.com. To see the full text click HERE

Read more