Status: UPDATED
| Advisory ID: CVE-2026-16527
Key Details
| CVE | CVE-2026-16527 |
| CVSS Score / Version | 7.3 (High) / CVSS v3.1 |
| Updated | 2026-10-02 |
| CVSS Vector | CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:L/I:L/A:L |
| CVSS Prose | attack vector is network; attack complexity is low; privileges required is none; user interaction is none; scope is unchanged; confidentiality impact is low; integrity impact is low; availability impact is low. |
| Affected products | see table below |
| Classified as | CWE-306 (Missing Authentication for Critical Function) |
| Exploitation prediction (EPSS) | 0.59% probability of exploitation in the next 30 days (46% percentile) -- FIRST.org's EPSS model. |
Affected Products, Subsystems & Sectors
| Subsystems | OT Supporting Infrastructure |
| Sectors | Multiple |
What to Know
An unauthenticated remote attacker can bypass access controls by sending crafted requests to the PCP pmproxy /store endpoint. This allows the attacker to overwrite any PMDA metric, leading to arbitrary code execution and system takeover. (NVD)
What to Do
Monitor Red Hat's web page for any future patch releases.
References