SimpleHelp RMM flaw could give attackers full access to managed endpoints (CVE-2026-48558)
ID: 755738ac-3240-51c6-bc3e-86b73af1ded5
STIX ID: report--755738ac-3240-51c6-bc3e-86b73af1ded5
Feed Name: Help Net Security
Threat Score
A critical OIDC authentication-bypass vulnerability (CVE-2026-48558) in SimpleHelp RMM can allow unauthenticated attackers to self-register a Technician account and remotely access managed endpoints; Horizon3.ai disclosed the issue, the vendor released fixes in v5.5.16 and v6.0 RC2, and administrators are urged to patch, isolate affected servers if they cannot patch immediately, and look for evidence of unexpected Technician account creation and suspicious logins.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
