Lanscope Endpoint Manager (On-Premises) (Client program (MR) and Detection agent (DA)) improperly verifies the origin of incoming requests, allowing an attacker to execute arbitrary code by sending specially crafted packets.
CVSS Details
- CVSS 4.0 Base Score: 9.3 (CRITICAL)
- CVSS 4.0 Vector: (CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X)
- CVSS 3.0 Base Score: 9.8
- CVSS 3.0 Vector: (CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H)
Covered by Rapid7
| Product | Vendor Advisory | Solution File | Added | Published |
|---|---|---|---|---|
| Motex Lanscope | — | Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.3.8Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.0.5Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.1.5Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.4.6Upgrade Motex Lanscope Endpoint Manager to patched version 9.3.3.9Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.5.4Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.2.6Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.7.3Upgrade Motex Lanscope Endpoint Manager to patched version 9.3.2.7Upgrade Motex Lanscope Endpoint Manager to patched version 9.4.6.3 | Apr 27, 2026 | Oct 20, 2025 |
Prioritise with Active Threat Intelligence
With curated Threat Intelligence, you can see which vulnerabilities truly put you at risk, prioritize what matters most, and act before attackers do.
Explore Intelligence Hub