ConnectWise patches critical ScreenConnect authentication failure after five days

Summary

ConnectWise has released a patch for ScreenConnect to address a critical authentication failure vulnerability, CVE-2026-84869. This flaw allowed unauthorized file transfers and execution during active remote sessions. The company had previously warned customers and advised mitigation steps before the patch was deployed.

IFF Assessment

FOE

The article details a critical vulnerability in a widely used remote access tool, which could be exploited by attackers to gain unauthorized access and execute files, posing a direct threat to defenders.

Severity

9.9 Critical

Defender Context

Defenders need to prioritize patching ScreenConnect to version 26.6.5 or later immediately to mitigate the risk of unauthorized file transfers and execution. This incident highlights the importance of timely patching for remote access solutions, as they can be prime targets for attackers seeking lateral movement within networks.

Read Full Story →