SEPTEMBER 11, 2026
Live Feed
Back to database
Case File

CVE-2026-42936

HIGH · CVSS 7.8 EPSS 0.14%

Source: NVD + CISA KEV + EPSS · Published 2026-07-15 · Last synced 2026-08-14

CyberRota Analysis

AI-Generated

The installer for HYPER SBI 2 is vulnerable due to insecure loading of Dynamic Link Libraries (DLLs), allowing an attacker to execute arbitrary code with the privileges of the user running the installer if a malicious DLL is placed in the same directory. This vulnerability poses a significant risk, particularly for users with elevated privileges, as it could lead to unauthorized access or system compromise. Organizations using HYPER SBI 2 should prioritize remediation to mitigate potential exploitation.

CVE
CVE-2026-42936
Severity
HIGH
CVSS
7.8
EPSS
0.14%

Original NVD Description

The installer of HYPER SBI 2 insecurely loads Dynamic Link Libraries. If there is a crafted DLL at the same directory when invoking the affected installer, arbitrary code may be executed with the privilege of the user invoking the installer.