Create a Post
cancel
Showing results for 
Search instead for 
Did you mean: 
Eran_Habad
Employee
Employee

Hardening Recommendation Report Now Includes CVE Exposure Visibility

Hi all,
 

Recently, we launched the Hardening Recommendation Report in Web SmartConsole, enabling administrators to review and improve the security posture of their Security Gateways and Management Servers.

Today, we're extending the Hardening Recommendation Report with CVE Exposure visibility, helping security teams quickly identify vulnerable devices, prioritize remediation efforts, and better understand their overall risk exposure.

The report now highlights known Check Point CVEs affecting Security Gateways and Management Servers, indicates whether each applicable CVE is patched, and provides actionable remediation information for devices that still require attention.

An illustrated example:

Image (11).png

The report summary includes:

  • Unpatched CVEs – The number of known CVEs that remain unpatched and the number of affected devices.
  • Highest CVSS Exposure – The highest CVSS score among all unpatched CVEs detected in the environment.

Also, for each device, the report provides detailed vulnerability information, including any unpatched Check Point CVEs and the corresponding remediation path. When a CVE is resolved in a later Jumbo Hotfix, the report displays the required JHF take that contains the fix. When a CVE is addressed through Check Point Live Patch, the report provides the patch installation status. If the patch was successfully installed, the CVE in the device is marked as patched. If the patch installation failed, the report displays the reason for the failure to help administrators take the necessary corrective actions.

With CVE Exposure integrated directly into the Hardening Recommendation Report, security teams can more easily assess their exposure, prioritize remediation efforts, and ensure critical security updates are applied across their environment 🚀

As always, we'd love to hear your feedback and suggestions for future improvements.

Eran

9 Replies
JozkoMrkvicka
Authority
Authority

Is the Hardening Recommendation Report visible ONLY in WSC (Web SmartConsole) ? Or also on installed SC ?

Kind regards,
Jozko Mrkvicka
0 Kudos
Lesley
MVP Platinum
MVP Platinum

Only Webconsole. Not installed SmartConsole

-------
Please press "Accept as Solution" if my post solved it 🙂
0 Kudos
CaseyB
Advisor

Awesome!

Looks like there is a discrepancy between a Cluster Object and Cluster Members though.

cve-cluster.pngcve-member.png

0 Kudos
Lesley
MVP Platinum
MVP Platinum

I had the same, this needs to be tweaked, it shows different stuff, that might cause people to get confused. 

-------
Please press "Accept as Solution" if my post solved it 🙂
0 Kudos
Lesley
MVP Platinum
MVP Platinum

Are spark firewalls supported? They seem to be included but I see data some data is not correct. R82.0.10 spark firmware. 

-------
Please press "Accept as Solution" if my post solved it 🙂
0 Kudos
CaseyB
Advisor

I was wondering the same on the spark appliances. Our 1535 devices are fully patched, and the CVE list is looking rough.

 

1535-cve.png

0 Kudos
Eran_Habad
Employee
Employee

Thanks for the feedback @CaseyB and @Lesley. I'll reach out directly to each of you to review this.

0 Kudos
D_TK
Advisor

Is this available in the fat client SC?  We only use p12 certs for SC logon so web con is not available to us.

0 Kudos
Eran_Habad
Employee
Employee

Hi, as stated above it's not available through SmartConsole, only through Web SmartConsole. However, we'll check the option to retrieve the file manually and directly from the Management Server itself (it will require SSH/SCP access to the Management though).

0 Kudos

Leaderboard

Epsum factorial non deposit quid pro quo hic escorol.

Upcoming Events

    CheckMates Events