Listen to this Post
CVE-2026-84869 affects the ConnectWise ScreenConnect client.
A condition in the client may allow files to be transferred through an active remote session.
The same condition may allow files to be executed through that active remote session.
This may occur without authorization.
This may occur without Host confirmation.
This behavior is limited to certain circumstances.
ScreenConnect servers are not impacted.
The vulnerability is tracked as CWE-269 Improper Privilege Management.
It is also tracked as CWE-862 Missing Authorization.
ConnectWise is the source for the CVE record.
CISA-ADP is also listed as a source.
The CVE was published on Sep 08, 2026.
The CVE was last modified on Sep 12, 2026.
The affected CPE is cpe:2.3:a:connectwise:screenconnect::::::::.
The vulnerable range is up to, excluding, 26.6.5.9742.
Affected products include ConnectWise ScreenConnect.
Affected versions are all versions prior to 26.6.5.
The vulnerability is in CISA’s Known Exploited Vulnerabilities Catalog.
The KEV vulnerability name is ConnectWise ScreenConnect Improper Privilege Management and Missing Authorization Vulnerability.
The KEV date added is September 11, 2026.
The KEV due date is September 14, 2026.
Required action is to apply mitigations in accordance with vendor instructions.
Required action includes compliance with CISA BOD 26-04.
Required action includes CISA Forensics Triage Requirements.
Stakeholders must evaluate internet exposure.
Stakeholders must follow BOD 26-04 patching guidelines.
Cloud services must follow applicable BOD 26-04 guidance or be discontinued if mitigations are unavailable.
The client is the impacted component.
The server is not impacted.
The issue involves improper privilege management and missing authorization.
DailyCVE Form:
Platform: ConnectWise ScreenConnect Client
Version: prior to 26.6.5
Vulnerability: Improper Privilege Management
Severity: Not specified
date: Sep 08, 2026
Prediction: Sep 14, 2026
(end of form)
What Undercode Say:
Analytics:
curl -s "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-84869" | jq '.vulnerabilities[].cve | {id, published, lastModified, descriptions, weaknesses, configurations}'
curl -s "https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json" | jq '.vulnerabilities[] | select(.cveID=="CVE-2026-84869")'
curl -s "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-84869" | jq -r '.vulnerabilities[].cve.configurations[]?.nodes[]?.cpeMatch[]?.criteria'
grep -R "26.6.5.9742" /var/log/ 2>/dev/null || true
Exploit: (Educational Purposes!)
No public exploit code is provided in the . Educational condition only: active remote session file transfer without authorization file execution without Host confirmation client-side impact only servers are not impacted
Educational verification only curl -s "https://services.nvd.nist.gov/rest/json/cves/2.0?cveId=CVE-2026-84869" | jq -r '.vulnerabilities[].cve.description.description_data[].value' curl -s "https://www.cisa.gov/sites/default/files/feeds/known_exploited_vulnerabilities.json" | jq '.vulnerabilities[] | select(.cveID=="CVE-2026-84869")'
Protection: from this CVE
Upgrade to 26.6.5.9742 or later. Apply ConnectWise mitigations. Follow CISA BOD 26-04. Follow CISA Forensics Triage Requirements. Discontinue use if mitigations unavailable. Evaluate internet exposure. Restrict active remote sessions. Require Host confirmation. Monitor file transfer and execution. Update clients, not servers.
Impact:
Unauthorized file transfer. Unauthorized file execution. Missing authorization. Missing Host confirmation. Improper privilege management. Remote session abuse. Potential client compromise. CISA KEV added Sep 11, 2026. CISA KEV due Sep 14, 2026. Servers not impacted.
🎯Let’s Practice Exploiting & Learn Patching For Free:
🎓 Live Courses & Certifications:
Join Undercode Academy for Verified Certifications
🚀 Request a Custom Project:
Secure, high-velocity infrastructure and disruptive technological engineering. Contact our engineering team for high-tier development and proprietary systems:
[email protected]
💎 Smart Architecture | 🛡️ Secure by Design | ⭐ Trusted by Thousands
Sources:
Reported By: nvd.nist.gov
Extra Source Hub:
Undercode

