CVE-2026-68959CWE-25

CVE-2026-68959

High · published August 25, 2026

CVSS v3.0
8.5
EPSS
1%
Percentile
49.0
In the wild
Unconfirmed
What it is

SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected products installed and can receive UDP packets from that system. Note that this vulnerability is due to an incomplete fix for CVE-2024-41726.

The record
Technical detail
CVSS v3.0
8.5 · HIGH
Vector
CVSS:3.0/AV:N/AC:H/PR:L/UI:N/S:C/C:H/I:H/A:H
CVSS v4.0
5.8 · CVSS:4.0/AV:N/AC:L/AT:P/PR:L/UI:N/VC:N/VI:N/VA:N/SC:H/SI:H/SA:H
EPSS
0.00654 · 49.0th percentile
Weakness
CWE-25 · Path Traversal: '/../filedir'
Published
2026-08-25T11:17Z
References (2)
EPSS history
Timeline
  • 26 AUG 08:23Z
    EPSS moved — → 1%
    epss
  • 25 AUG 06:27Z
    SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability
    cvelistv5