CVE-2026-36433: Actions Semiconductor Co. Ltd Tool- Media Player Utilities vulnerability
Published Sep 9, 2026
·Updated
An issue in Actions Semiconductor Co. Ltd Tool- Media Player Utilities v.4.46 allows a physically proximate attacker execute arbitrary code via the Production.dll and RdiskUpgrade.exe components
Affected Software
1 affected component
Actions Semiconductor Co. Ltd Tool- Media Player Utilities=4.46
Event History
Sep 9, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Frequently Asked Questions
1
Who is realistically exposed to exploitation?
Systems with Actions Semiconductor Co. Ltd Tool- Media Player Utilities version 4.46 installed are potentially exposed when an attacker can gain physical proximity to the affected system.
2
What level of attacker access is required?
The issue is described as requiring a physically proximate attacker. The provided information does not indicate that it can be exploited remotely over a network.
3
Which components are involved in the code-execution risk?
The affected components identified are Production.dll and RdiskUpgrade.exe.