CVE-2026-66154: GMS application vulnerability
Published Aug 11, 2026
·Updated
An insufficient certificate validation in a privileged communication workflow, was identified in a GMS application 9.5.1 (Build 9510.1044) and earlier versions which, under a successful MitM attack and controlled network conditions, could permit unauthorized changes.
Affected Software
1 affected component
GMS application<=9.5.1
Event History
Aug 11, 2026
CVE Published
via MITRE·08:12 PM
Data Sourced
via MITRE·08:12 PM
DescriptionWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-66154?
The severity of CVE-2026-66154 is rated at 50.
2
How do I fix CVE-2026-66154?
To fix CVE-2026-66154, ensure that you update the GMS application to version 9.5.1 Build 9510.1045 or later.
3
What is the impact of CVE-2026-66154?
CVE-2026-66154 allows unauthorized changes under a successful Man-in-the-Middle (MitM) attack.
4
Which software is affected by CVE-2026-66154?
CVE-2026-66154 affects the GMS application version 9.5.1 (Build 9510.1044) and earlier versions.
5
When was CVE-2026-66154 published?
CVE-2026-66154 was published on August 11, 2026.