CVE-2026-82796: XSS
Published Sep 14, 2026
·Updated
SolarView Compact contains a cross-site scripting vulnerability in Image Management. If this vulnerability is exploited, an arbitrary OS command may be executed by an attacker who can log in to the product.
Affected Software
1 affected component
SolarView Compact
Event History
Sep 14, 2026
CVE Published
via MITRE·06:46 AM
Data Sourced
via MITRE·06:46 AM
DescriptionSeverity
Data Sourced
via NVD·07:17 AM
DescriptionSeverityWeakness
Frequently Asked Questions
1
Who can exploit this issue?
An attacker must be able to log in to SolarView Compact. Exploitation also requires user interaction, as reflected by the UI:R vector.
2
What functionality is affected?
The vulnerability is in Image Management. Successful exploitation can lead to arbitrary OS command execution.
3
What is the potential impact?
The supplied vector indicates low confidentiality and integrity impact, no availability impact, and a scope change. The description states that arbitrary OS commands may be executed after exploitation.