Script Execution Vulnerability in Application by TopTech
CVE-2026-69662
2.1LOW
What is CVE-2026-69662?
This vulnerability occurs in the TopTech TMS7 application, where unsafe functions allow the execution of inline scripts and string evaluation, potentially enabling attackers to manipulate the application behavior and execute arbitrary code. This flaw poses a security risk by jeopardizing the integrity of the application and the confidentiality of sensitive information.
Affected Version(s)
TMS7 7.6.3
TopHAT 7.6.3
TMS7 7.8
References
CVSS V4
Score:
2.1
Severity:
LOW
Confidentiality:
Low
Integrity:
Low
Availability:
None
Attack Vector:
Adjacent Network
Attack Complexity:
High
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Sachin Shetty and Roy Duisters of Shell CyberDefence reported this vulnerability to Toptech and CISA.
