Script Execution Vulnerability in Application by TopTech
CVE-2026-69662

2.1LOW

Key Information:

Vendor
CVE Published:
29 September 2026

What is CVE-2026-69662?

This vulnerability occurs in the TopTech TMS7 application, where unsafe functions allow the execution of inline scripts and string evaluation, potentially enabling attackers to manipulate the application behavior and execute arbitrary code. This flaw poses a security risk by jeopardizing the integrity of the application and the confidentiality of sensitive information.

Affected Version(s)

TMS7 7.6.3

TopHAT 7.6.3

TMS7 7.8

References

CVSS V4

Score:
2.1
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Sachin Shetty and Roy Duisters of Shell CyberDefence reported this vulnerability to Toptech and CISA.
.