← Alle News
ARTIKEL
22. September 2026

ScreenConnect CVE-2026-84869: MSP-Advisory — Clients/Agents auf 26.6.5+ patchen

Priority-1 High CVSS 9.9. Server nicht betroffen. Cloud auto; On-Prem Upgrade + Reinstall Clients auf 26.6.5+. TransferFiles ≠ Patch. KEIN PoC. Cite ConnectWise 2026-09-08.

ScreenConnect CVE-2026-84869: MSP-Advisory — Clients/Agents auf 26.6.5+ patchen

· RADAR 2026-09-20 18:00 Europe/Rome · Publish = Mensch (Nao).

ConnectWise veröffentlichte ein Priority-1 High Bulletin zu CVE-2026-84869 (CVSS 9.9, CWE-862/269) für ScreenConnect-Clients/Access-Agents. Laut Vendor: Server nicht betroffen. Cloud auto-gepatcht; On-Prem Upgrade + Reinstall Host-Clients/Access-Agents auf 26.6.5+.

Primärquelle: ConnectWise Bulletin · 2026-09-08.

Interim-Mitigation (kein Patch-Ersatz): TransferFiles auf allen Rollen abwählen. Nur temporäre Risikoreduktion — trotzdem 26.6.5+.

Verbot: kein Exploit/PoC.

# MSP defensive checklist — ScreenConnect CVE-2026-84869 (NO PoC)
1. Inventory on-prem ScreenConnect servers + host clients + access agents
2. Confirm Cloud auto-patch status in vendor portal (if SaaS)
3. Upgrade on-prem to vendor-supported build; reinstall clients/agents to 26.6.5+
4. Verify agent/client build strings == 26.6.5 or newer across estates
5. Interim only: deselect TransferFiles on ALL roles (NOT a patch substitute)
6. Enforce MFA/SSO for technician consoles; audit standing sessions + roles
7. Review file-transfer / remote-shell permissions per customer tenant
# Do NOT: reproduce exploit, share PoC, or probe customer hosts without authorization

Remote-Access-/RMM-Clients verstärken den Blast Radius — Agent-Flottenhygiene wie Kronjuwelen. Soft Lodestar übersprungen (403).

Nur Entwurf.