← Back to CVE List
Vulnerability Intelligence Report

CVE-2026-68062

SKYSEA Client View and SKYMEC IT Manager contain a path traversal vulnerability. If this vulnerability is exploited, an attacker who can log in to a Windows system on which the affected product is installed may be able to execute arbitrary code on another Windows system that has the affected products installed and can receive UDP packets from that system. Note that this vulnerability is due to an incomplete fix for CVE-2024-41726.

Path Traversal No Active Exploit Signals
CVSS Base Score
8.5
HIGH
Exploitability:1.8
Impact Score:6.1
EPSS Probability:0.65%
Executive Threat Verdict
Evaluating...
Evaluating Threat Landscape...
Assessing known weaponization, exploitation telemetry, and federal advisories.
Attack Surface
Authentication
Weaponization
SSVC Action

Weaknesses (CWE)

CWE-22 ↗Improper limitation of a pathname to a restricted directory ('Path Traversal')

Affected Products & Versions

Vendor Product Affected Versions
Sky Co., LTD. SKYSEA Client View Ver.19.300.09h <= Ver.21.210.01f (affected)
Sky Co., LTD. SKYMEC IT Manager Ver.2024.005.10a (affected)

References & Technical Advisories

No reference links found.

Threat Intelligence Signals

EPSS Score
0.654%
Vulnerability Class
Path Traversal

Identity & Timeline

StatusPUBLISHED
Assigning AuthorityJPCERT/CC · CERT · Japan
Reserved2026-08-05T03:02:22
Published2026-08-25T06:27:54
Last Updated2026-08-25T15:07:18

LINK COPIED TO CLIPBOARD