CVE-2026-78319: TOCTOU Vulnerability in file exchange
Published Sep 1, 2026
·Updated
A service running on the affected products contains a potential Time-of-Check Time-of-Use (TOCTOU) race condition. An unauthenticated remote attacker could exploit this race condition to bypass intended security controls. This may result in the execution of unauthorized code.
Affected Software
1 affected component
file exchange
Event History
Sep 1, 2026
CVE Published
via MITRE·06:44 AM
Data Sourced
via MITRE·06:44 AM
DescriptionWeakness
Frequently Asked Questions
1
Who is exposed to exploitation?
Systems running the affected file exchange service are exposed because the issue can be exploited remotely without authentication.
2
What does an attacker need to exploit this issue?
The attacker needs remote access to the affected service and must successfully exploit the race condition. No authentication is required.
3
What is the potential impact of a successful exploit?
Successful exploitation may bypass intended security controls and lead to execution of unauthorized code.