CVE-2026-41500 – Electerm

CVSS 9.8 CRITICAL

“One weak entry point is dangerous—two can hand over everything.”

This patch addresses multiple critical vulnerabilities in Electerm that expose systems to full compromise. Both CVE-2026-41500 and CVE-2026-41501 impact versions prior to 3.3.8 and allow attackers to execute malicious actions through improperly handled input and system interactions.

CVE-2026-41500 has a CVSS score of 9.8, which is Critical severity. CVE-2026-41501 has a CVSS score of 9.8, which is Critical severity. These vulnerabilities can be exploited remotely without authentication, enabling attackers to gain full control over affected systems. The issues have been resolved in version 3.3.8, which removes the unsafe execution paths.

No verified exploitation has been confirmed for either vulnerability.

Key Details

Affected Product
Electerm Project Electerm
Attack Vector
Network
Attack Complexity
Low
Privileges Required
None
User Interaction
None
CWE Classification
CWE-77
Patch this CVE on all your endpoints in under 5 minutes. First 200 endpoints are free forever, scale as needed.