CVE-2026-11596
Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
10/06/2026
Last modified:
10/06/2026
Description
In ScreenConnect™ versions prior to 26.2, input<br />
validation within the Host Pass creation functionality could allow an<br />
authenticated user with Host Pass creation privileges the ability to specify a<br />
token expiration duration beyond the intended maximum when generating delegated<br />
access tokens.
Impact
Base Score 3.x
4.70
Severity 3.x
MEDIUM



