CVE-2026-69665: High severity SKYSEA Client View vulnerability
SKYSEA Client View and SKYMEC IT Manager contain an issue with incorrect default permissions. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may execute arbitrary code with SYSTEM privilege.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Compensating control
Adjust SKYSEA Client View and SKYMEC IT Manager to correct the incorrect default permissions to prevent attackers who log in to the Windows system from gaining SYSTEM-level arbitrary code execution.
Event History
Frequently Asked Questions
Who is realistically exposed to this issue?
Windows systems with SKYSEA Client View or SKYMEC IT Manager installed are exposed if an attacker can log in locally with an account that has at least low privileges.
What access does an attacker need to exploit it?
The attacker must be able to log in to the affected Windows system. No user interaction is required, and successful exploitation can result in arbitrary code execution with SYSTEM privileges.