CVE-2026-68959

SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected products installed and can receive UDP packets from that system. Note that this vulnerability is due to an incomplete fix for CVE-2024-41726.

Scoring

Severity
MEDIUM
CVSS base score
8.5
CVSS vector
CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H
EPSS probability
0.65%
CWE
CWE-25
Published
2026-08-25
Last modified
2026-08-25

Affected products

Weakness type

Related vulnerabilities

Markdown version · Browse all CVEs