CVE-2026-5397: Omron Social Solutions Co., Ltd Powerattendant Standard Edition
High severity, CVSS 7.8. EPSS: 0.1% chance of exploitation in the next 30 days.
It has been identified that a vulnerability (CWE-427) exists in the UPS (Uninterruptible Power Supply) management application, whereby improper permissions on the installation directory allow a malicious actor to place a DLL that is then executed with administrator privileges. If a malicious DLL is placed in the installation directory of this product, there is a possibility that the malicious DLL may be executed by exploiting the product’s behavior of loading missing DLLs from the same directory as the executable during service startup.
Affected products
- Omron Social Solutions Co., Ltd Powerattendant Standard Edition: up to and including 2.1.2
Published 2026-04-15. Last modified 2026-06-17.