A critical authentication bypass vulnerability in Check Point Security Management Server and Multi-Domain Security Management Server (MDS) allowing unauthenticated remote attackers to gain full administrative privileges via SmartConsole. CVSS score 9.3. Actively exploited as a zero-day.