CVE-2026-27653

Severity CVSS v4.0:
MEDIUM
Type:
Unavailable / Other
Publication date:
27/02/2026
Last modified:
17/03/2026

Description

The installers for multiple products provided by Soliton Systems K.K. contain an issue with incorrect default permissions, which may allow arbitrary code to be executed with SYSTEM privileges.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:soliton:securebrowser_for_onegate:1.0.0:*:*:*:*:windows:*:*
cpe:2.3:a:soliton:securebrowser_ii:*:*:*:*:*:windows:*:* 2.0.0 (including) 2.0.15 (excluding)
cpe:2.3:a:soliton:secureworkspace:*:*:*:*:*:*:*:* 1.0.0 (including) 1.4.8 (excluding)