AUGUST 21, 2026
Live Feed
Back to database
Case File

CVE-2026-14867

MEDIUM · CVSS 5.5 EPSS 0.09%

Source: NVD + CISA KEV + EPSS · Published 2026-07-07 · Last synced 2026-08-06

CyberRota Analysis

AI-Generated

Built-in user credentials in the User directory of PcVue projects prior to version 17.0.0 are stored insecurely, allowing local attackers to potentially retrieve these credentials. While Active Directory accounts remain unaffected, organizations using vulnerable versions should prioritize remediation to mitigate the risk of unauthorized access to sensitive project information.

CVE
CVE-2026-14867
Severity
MEDIUM
CVSS
5.5
EPSS
0.09%

Original NVD Description

Credentials of built-in users are insecurely stored in the User directory of PcVue projects, all versions prior to 17.0.0. A local attacker could retrieve users’ credentials.  Active Directory accounts are not affected by this vulnerability.

Related CVEs

Other vulnerabilities affecting the same vendor(s)