CVE-2026-33922
- EPSS 0.17%
- Veröffentlicht 11.08.2026 09:48:35
- Zuletzt bearbeitet 11.08.2026 15:17:29
A path traversal vulnerability was discovered in the Offline archives functionality of the local web interface due to insufficient validation of an input parameter. A local user with administrative credentials for the web interface could submit an ar...
CVE-2026-33921
- EPSS 0.13%
- Veröffentlicht 11.08.2026 09:48:20
- Zuletzt bearbeitet 11.08.2026 15:17:29
The Windows installer deployed Npcap leaving its access restriction option at the insecure default value, so the driver was accessible to every local user of the host instead of being restricted to administrators only. A local user without administra...
CVE-2025-40896
- EPSS 0.11%
- Veröffentlicht 04.03.2026 13:52:52
- Zuletzt bearbeitet 05.03.2026 18:48:12
The server certificate was not verified when an Arc agent connected to a Guardian or CMC. A malicious actor could perform a man-in-the-middle attack and intercept the communication between the Arc agent and the Guardian or CMC. This could result i...