CVE-2026-3564: ScreenConnect Instance Level Cryptographic Material Exposure
A condition in the ScreenConnect server component may allow an actor with access to server-level cryptographic material used for authentication to obtain unauthorized access, including elevated privileges, in certain scenarios. ScreenConnect host and guest client agents are not independently affected by this CVE.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
ScreenConnect Serverto a version that resolves this vulnerability.Fixed in 26.1
Event History
Frequently Asked Questions
What is the severity of CVE-2026-3564?
CVE-2026-3564 is considered critical due to the potential for unauthorized access and privilege escalation.
How do I fix CVE-2026-3564?
To address CVE-2026-3564, update your ScreenConnect software to the latest version provided by the vendor.
What are the risks associated with CVE-2026-3564?
The risks of CVE-2026-3564 include unauthorized access to server-level credentials and the potential for malicious actors to gain elevated privileges.
Who is affected by CVE-2026-3564?
Any user operating an affected version of ScreenConnect SaaS is potentially at risk from CVE-2026-3564.
What steps can I take to mitigate CVE-2026-3564?
To mitigate CVE-2026-3564, ensure that sensitive cryptographic materials are securely stored and apply security patches promptly.