CVE-2026-27653: Medium severity Soliton Securebrowser For Onegate Windows vulnerability
The installers for multiple products provided by Soliton Systems K.K. contain an issue with incorrect default permissions, which may allow arbitrary code to be executed with SYSTEM privileges.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-27653?
CVE-2026-27653 has a high severity rating due to the potential for arbitrary code execution with SYSTEM privileges.
How do I fix CVE-2026-27653?
To resolve CVE-2026-27653, update affected Soliton products to their latest versions that contain permission fixes.
Which products are affected by CVE-2026-27653?
CVE-2026-27653 affects Soliton Securebrowser for Onegate 1.0.0, Soliton Securebrowser II versions 2.0.0 to 2.0.15, and Soliton Secureworkspace versions 1.0.0 to 1.4.8.
What risks are associated with CVE-2026-27653?
The risks associated with CVE-2026-27653 include unauthorized access to sensitive data and control over affected systems.
Is there a workaround for CVE-2026-27653 until a patch is applied?
There are no known effective workarounds for CVE-2026-27653, so applying the patch is strongly recommended.