AUGUST 16, 2026
Live Feed
Back to database
Case File

CVE-2026-66839

MEDIUM · CVSS 6.7 EPSS 0.14% Public Exploit

Source: NVD + CISA KEV + EPSS · Published 2026-08-05 · Last synced 2026-08-16

CyberRota Analysis

AI-Generated

The vulnerability in NetKids iMark allows an authenticated attacker to exploit an unquoted search path, potentially leading to arbitrary code execution with SYSTEM privileges. This poses a significant risk, as it could enable unauthorized access and control over the affected systems. Organizations using this software should prioritize remediation to mitigate the potential for exploitation.

Public Exploit Signal

A public exploit, PoC, GitHub repository or Metasploit reference was detected for this CVE.

Detected Signals
exploit

Note: these links are listed for security research and verification purposes only.

CVE
CVE-2026-66839
Severity
MEDIUM
CVSS
6.7
EPSS
0.14%

Original NVD Description

NetKids iMark, provided by Integrated Systems Technologies, Inc., contains an Unquoted Search Path or Element vulnerability (CWE-428). An authenticated attacker may exploit this vulnerability to execute arbitrary code with SYSTEM privileges.