High severity7.9NVD Advisory· Published Oct 1, 2026· Updated Oct 1, 2026
CVE-2026-79899
CVE-2026-79899
Description
Fortra BoKS Manager contains an insecure temporary file vulnerability in bccgethostcert. The utility creates predictable temporary files without first setting a restrictive umask. A local user on the BoKS Master who can read files under BOKS_tmp may be able to obtain CA secret or host private-key material while the utility runs, or obtain CA secret material left behind after successful certificate creation.
Affected products
2Patches
Vulnerability mechanics
References
1News mentions
0No linked articles in our index yet.