CVE-2026-39454: Skygroup Skymec It Manager
High severity, CVSS 8.5. EPSS: 0.2% chance of exploitation in the next 30 days.
SKYSEA Client View and SKYMEC IT Manager provided by Sky Co.,LTD. configure the installation folder with improper file access permission settings. A non-administrative user may manipulate and/or place arbitrary files within the installation folder of the product. As a result, arbitrary code may be executed with the administrative privilege.
Affected products
- Skygroup Skymec It Manager: up to and including 2024.005.10a
- Skygroup SKYSEA Client View: up to and including 21.200.07j
Published 2026-04-20. Last modified 2026-06-17.