CyberICT

CVE-2026-84869

ConnectWise · Published September 8, 2026

CVSS v3.1

CRITICAL
Patch availableGet patch

Description

A condition in the ScreenConnect client may allow files to be transferred and executed through an active remote session without authorization or Host confirmation in certain circumstances. ScreenConnect servers are not impacted.

Affected Products

  • Screenconnect < 26.6.5.9742

CVSS Vector

CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:H