Critical severity9.0NVD Advisory· Published Mar 17, 2026· Updated Jul 9, 2026
CVE-2026-3564
CVE-2026-3564
Description
A condition in the ScreenConnect server component may allow an actor with access to server-level cryptographic material used for authentication to obtain unauthorized access, including elevated privileges, in certain scenarios. ScreenConnect host and guest client agents are not independently affected by this CVE.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
2(expand)+ 1 more
- (no CPE)
- (no CPE)range: All versions prior to 26.1
Patches
Vulnerability mechanics
References
1News mentions
1- 23rd March – Threat Intelligence ReportCheck Point Research · Mar 23, 2026