CVE-2026-39454: High severity Sky Co.,LTD. SKYSEA Client View vulnerability
SKYSEA Client View and SKYMEC IT Manager provided by Sky Co.,LTD. configure the installation folder with improper file access permission settings. A non-administrative user may manipulate and/or place arbitrary files within the installation folder of the product. As a result, arbitrary code may be executed with the administrative privilege.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2026-39454?
CVE-2026-39454 is considered a high severity vulnerability as it allows non-administrative users to manipulate files in the installation folder.
How do I fix CVE-2026-39454?
To fix CVE-2026-39454, ensure proper file access permissions are set for the installation folder of SKYSEA Client View and SKYMEC IT Manager.
What types of systems are affected by CVE-2026-39454?
CVE-2026-39454 affects SKYSEA Client View and SKYMEC IT Manager provided by Sky Co.,LTD.
Can CVE-2026-39454 lead to arbitrary code execution?
Yes, CVE-2026-39454 can potentially lead to arbitrary code execution due to improper file access permissions.
Who is responsible for addressing CVE-2026-39454?
The responsibility for addressing CVE-2026-39454 lies with the users and administrators of SKYSEA Client View and SKYMEC IT Manager software.