CVE-2014-8951: Check Point Security Gateway

High severity, CVSS 7.1. EPSS: 1.5% chance of exploitation in the next 30 days.

Unspecified vulnerability in Check Point Security Gateway R75, R76, R77, and R77.10, when UserCheck is enabled and the (1) Application Control, (2) URL Filtering, (3) DLP, (4) Threat Emulation, (5) Anti-Bot, or (6) Anti-Virus blade is used, allows remote attackers to cause a denial of service (fwk0 process crash, core dump, and restart) via a redirect to the UserCheck page.

Affected products

  • Check Point Security Gateway: version r75 only; version r76 only; version r77 only; version r77.10 only

Published 2014-11-16. Last modified 2026-06-17.