CVE-2026-50752
HIGH
NVD
CVSS Score
7.4
Severity
HIGH
Published
Jun 08, 2026
Vendor
unknown
Description
A weakness in the certificate validation logic of the deprecated IKEv1 key exchange may allow an unauthenticated attacker positioned as a man-in-the-middle to bypass certificate validation in VPN site-to-site connections that use certificate-based authentication. Successful exploitation could allow interception or modification of traffic traversing the VPN tunnel.