Local Privilege Escalation Vulnerability in NoMachine Device Server
CVE-2026-5055
7.8HIGH
What is CVE-2026-5055?
The NoMachine Device Server contains a vulnerability that permits local attackers to escalate their privileges due to an unsecured library loading process. This flaw enables an attacker, who has already executed low-privileged code on the machine, to exploit the vulnerability to gain higher-level access and run arbitrary code within the SYSTEM context. Proper defenses against such threats should be implemented to mitigate potential exploitation.
Affected Version(s)
NoMachine 9.2.18_1
