Unrated severityNVD Advisory· Published Jul 9, 2026· Updated Jul 9, 2026
Incorrect privilege assignment for Arc sensors in Guardian/CMC before 26.2.0
CVE-2026-33390
Description
An Incorrect Privilege Assignment vulnerability was discovered in the synchronization functionality due to Arc sensors receiving CLI permissions. An authenticated user with limited privileges can push administrative CLI commands through the sync, altering the device configuration, and/or affecting its availability.
Affected products
1- Range: <26.2.0
Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.