« Volver al listado

CVE-2026-91843

Estado: Pendiente de análisisCrítica (9.8)—

A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges.

CVSS

Probabilidad de explotación (EPSS)

EPSS (Exploit Prediction Scoring System, de FIRST) estima la probabilidad de que una vulnerabilidad sea explotada en 30 días. Complementa a CVSS (impacto) y a CISA KEV (explotación confirmada).

🎯 Técnicas ATT&CK

Cómo se explota esta vulnerabilidad y qué consigue el atacante, en el lenguaje de MITRE ATT&CK.

Stack overflow en login sin autenticación (AV:N, PR:N) permite ejecución de código arbitrario con permisos root. Vector crítico con C:H, I:H, A:H confirma compromiso total del sistema.

Inferido por nuestro agente de análisis a partir de la descripción oficial, el vector CVSS y la CWE, y comprobado por un supervisor. Puede contener errores.

🛡️ Mitigaciones ATT&CK que cubren estas técnicas

CWE

Referencias

JSON original (NVD)

Mostrar
{
  "id": "CVE-2026-91843",
  "cveTags": [],
  "metrics": {
    "ssvcV203": [
      {
        "source": "134c704f-9b21-4f2e-91b3-4a467353bcc0",
        "ssvcData": {
          "id": "CVE-2026-91843",
          "role": "CISA Coordinator",
          "options": [
            {
              "exploitation": "none"
            },
            {
              "automatable": "yes"
            },
            {
              "technicalImpact": "total"
            }
          ],
          "version": "2.0.3",
          "timestamp": "2026-09-17T03:56:52.301574Z"
        }
      }
    ],
    "cvssMetricV31": [
      {
        "type": "Secondary",
        "source": "cve@checkpoint.com",
        "cvssData": {
          "scope": "UNCHANGED",
          "version": "3.1",
          "baseScore": 9.8,
          "attackVector": "NETWORK",
          "baseSeverity": "CRITICAL",
          "vectorString": "CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H",
          "integrityImpact": "HIGH",
          "userInteraction": "NONE",
          "attackComplexity": "LOW",
          "availabilityImpact": "HIGH",
          "privilegesRequired": "NONE",
          "confidentialityImpact": "HIGH"
        },
        "impactScore": 5.9,
        "exploitabilityScore": 3.9
      }
    ]
  },
  "affected": [
    {
      "source": "cve@checkpoint.com",
      "affectedData": [
        {
          "vendor": "checkpoint",
          "product": "Quantum Security Management",
          "versions": [
            {
              "status": "affected",
              "version": "R82.10 with Jumbo Hotfix Take 44 or below"
            },
            {
              "status": "affected",
              "version": "R82 with Jumbo Hotfix Take 126 or below"
            },
            {
              "status": "affected",
              "version": "R81.20 with Jumbo Hotfix Take 166 or below"
            },
            {
              "status": "affected",
              "version": "R81.10 (EOS) with Jumbo Hotfix Take 190 or below"
            },
            {
              "status": "affected",
              "version": "R81 (EOS)"
            },
            {
              "status": "affected",
              "version": "R80.40 (EOS)"
            },
            {
              "status": "affected",
              "version": "R80.30 (EOS)"
            },
            {
              "status": "affected",
              "version": "R80.20 (EOS)"
            },
            {
              "status": "affected",
              "version": "R80.10 (EOS)"
            },
            {
              "status": "affected",
              "version": "R80 (EOS)"
            }
          ]
        }
      ]
    }
  ],
  "published": "2026-09-16T14:17:13.947",
  "references": [
    {
      "url": "https://support.checkpoint.com/results/sk/sk1000155",
      "source": "cve@checkpoint.com"
    }
  ],
  "vulnStatus": "Awaiting Analysis",
  "weaknesses": [
    {
      "type": "Secondary",
      "source": "cve@checkpoint.com",
      "description": [
        {
          "lang": "en",
          "value": "CWE-121"
        }
      ]
    }
  ],
  "descriptions": [
    {
      "lang": "en",
      "value": "A stack overflow during the unauthenticated login process may allow an attacker to run arbitrary code remotely with root privileges."
    }
  ],
  "lastModified": "2026-09-18T19:34:36.657",
  "sourceIdentifier": "cve@checkpoint.com"
}