PT-2025-19994 · Unknown · Smp Act.Cc

Published

2025-05-01

·

Updated

2025-09-04

·

CVE-2025-26438

CVSS v3.1

8.8

High

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions smp act.cc (affected versions not specified)
Description An incorrect implementation of a protocol in the smp process secure connection oob data function within smp act.cc may allow bypassing SMP authentication. This could lead to remote escalation of privilege without requiring additional execution privileges or user interaction.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Improper Authentication

Weakness Enumeration

Related Identifiers

ASB-A-251514171
CVE-2025-26438

Affected Products

Smp Act.Cc