Home

Description

A condition in ScreenConnect may allow an actor with access to server-level cryptographic material used for authentication to obtain unauthorized access, including elevated privileges, in certain scenarios.

PUBLISHED Reserved 2026-03-04 | Published 2026-03-17 | Updated 2026-03-18 | Assigner ConnectWise




CRITICAL: 9.0CVSS:3.1/AV:N/AC:H/PR:N/UI:N/S:C/C:H/I:H/A:H

Problem types

CWE-347 Improper Verification of Cryptographic Signature

Product status

Default status
unaffected

All versions prior to 26.1
affected

References

www.connectwise.com/...ins/2026-03-17-screenconnect-bulletin

cve.org (CVE-2026-3564)

nvd.nist.gov (CVE-2026-3564)

Download JSON