CVE-2026-68960: Buffer Overflow
A stack-based buffer overflow vulnerability exists in SKYSEA Client View and SKYMEC IT Manager. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected product installed and can receive UDP packets from that system.
Affected Software
Event History
Frequently Asked Questions
What access does an attacker need to exploit this issue?
The attacker must be able to log in to a Windows system where an affected product is installed. User interaction is not required.
Which systems are at risk of code execution?
Another Windows system with an affected product installed is at risk if it can receive UDP packets from the attacker-controlled affected system. Successful exploitation may allow arbitrary code execution on that receiving system.
Is exploitation straightforward over the network?
The vulnerability is network-reachable through UDP, but the attack complexity is rated high. The available information does not identify the specific conditions that make exploitation difficult.