CVE-2025-26396: SolarWinds Dameware Mini Remote Control Service

High severity, CVSS 7.8. EPSS: 0.2% chance of exploitation in the next 30 days.

The SolarWinds Dameware Mini Remote Control was determined to be affected by Incorrect Permissions Local Privilege Escalation Vulnerability. This vulnerability requires local access and a valid low privilege account to be susceptible to this vulnerability.

Affected products

  • SolarWinds Dameware Mini Remote Control Service: up to and including 12.3.1.20

Published 2025-06-02. Last modified 2026-06-17.