CVE-2026-10739
Cato Networks SDP Client for Windows is vulnerable to Local Privilege Escalation
CVSS Score
0.0
EPSS Score
0.0%
EPSS Percentile
0th
Cato Networks SDP Client for Windows before 6.12.6 allows a local user to delete arbitrary files with SYSTEM privileges via improper validation of a client-supplied SID over a local IPC named pipe.
| CWE | CWE-23 CWE-59 CWE-73 |
| Vendor | cato networks |
| Product | sdp client |
| Published | Sep 30, 2026 |
| Last Updated | Sep 30, 2026 |
Stay Ahead of the Next One
Get instant alerts for cato networks sdp client
Be the first to know when new unknown vulnerabilities affecting cato networks sdp client are published โ delivered to Slack, Telegram or Discord.
Get Free Alerts โ
Free ยท No credit card ยท 60 sec setup
Affected Versions
Cato Networks / SDP Client
0 < 6.12.6