CVE-2026-41501 – Electerm
“One weak entry point is dangerous—two can hand over everything.”
This patch addresses multiple critical vulnerabilities in Electerm that expose systems to full compromise. Both CVE-2026-41500 and CVE-2026-41501 impact versions prior to 3.3.8 and allow attackers to execute malicious actions through improperly handled input and system interactions.
CVE-2026-41500 has a CVSS score of 9.8, which is Critical severity. CVE-2026-41501 has a CVSS score of 9.8, which is Critical severity. These vulnerabilities can be exploited remotely without authentication, enabling attackers to gain full control over affected systems. The issues have been resolved in version 3.3.8, which removes the unsafe execution paths.
No verified exploitation has been confirmed for either vulnerability.
Key Details
- Affected Product
- Electerm Project Electerm
- Attack Vector
- Network
- Attack Complexity
- Low
- Privileges Required
- None
- User Interaction
- None
- CWE Classification
- CWE-77