CVE-2026-25785: Motex LANSCOPE Endpoint Manager

Critical severity, CVSS 9.3. EPSS: 0.9% chance of exploitation in the next 30 days.

Path traversal vulnerability exists in Lanscope Endpoint Manager (On-Premises) Sub-Manager Server Ver.9.4.7.3 and earlier, which may allow an attacker to tamper with arbitrary files and execute arbitrary code on the affected system.

Affected products

  • Motex LANSCOPE Endpoint Manager: before 9.4.8.0 (fixed in 9.4.8.0)

Published 2026-02-25. Last modified 2026-06-17.