CVE-2026-22676
Last modified
CVE-2026-22676 is a high-severity vulnerability rated 8.5/10 on the CVSS scale. Barracuda RMM versions prior to 2025.2.2 contain a privilege escalation vulnerability that allows local attackers to gain SYSTEM-level privileges by exploiting overly permissive filesystem ACLs on the C:\Windows\Automation directory. Attackers can modify existing automation content or place attacker-controlled files in this directory, which are then executed under the NT AUTHORITY\SYSTEM account during routine automation cycles, typically succeeding within the next execution cycle.. EPSS estimates a 0.10% chance of exploitation in the next 30 days.
Description
Barracuda RMM versions prior to 2025.2.2 contain a privilege escalation vulnerability that allows local attackers to gain SYSTEM-level privileges by exploiting overly permissive filesystem ACLs on the C:\Windows\Automation directory. Attackers can modify existing automation content or place attacker-controlled files in this directory, which are then executed under the NT AUTHORITY\SYSTEM account during routine automation cycles, typically succeeding within the next execution cycle.
Metrics
Weakness Enumeration
Affected Software
Source: CNA advisory (CVE.org). NVD analysis pending.
| Vendor | Product | Versions |
|---|---|---|
| Barracuda Networks | RMM | < 2025.2.2 |
References
Timeline
- Published
- Last Modified
- Status
- Awaiting Analysis
Frequently Asked Questions
What is CVE-2026-22676?
How severe is CVE-2026-22676?
How do I fix CVE-2026-22676?
How Strix Helps
- How Strix found a critical auth bypass in etcdStrix autonomously discovered a critical authentication bypass in etcd, later designated CVE-2026-33413.
- Autonomous PentestingAI agents that find and validate exploitable vulnerabilities like this one across your applications.
- PR ReviewsPentest every pull request so vulnerable code is caught before it ships to production.
- AI Penetration TestingHow AI-driven penetration testing continuously covers your attack surface.
Related CVEs from 2026
- CVE-2026-22663prompts.chat prior to commit 7b81836 contains multiple autho…8.7
- CVE-2026-22664prompts.chat prior to commit 30a8f04 contains a server-side …7.7
- CVE-2026-22665prompts.chat prior to commit 1464475, contains an identity c…8.6
- CVE-2026-22666Dolibarr ERP/CRM versions prior to 23.0.2 contain an authent…8.6
- CVE-2026-22674Hashgraph Guardian through 3.6.0, fixed in commit ba8c566, c…4.8
- CVE-2026-22675OCS Inventory NG Server version 2.12.3 and prior contain a s…6.1
- CVE-2026-22677Hermes WebUI prior to 0.51.44 contains a path traversal vuln…6.5
- CVE-2026-22678Webmin before 2.641 contains a stored cross-site scripting v…5.4
- CVE-2026-22679Weaver (Fanwei) E-cology 10.0 versions prior to 20260312 con…9.8
- CVE-2026-2268The Ninja Forms plugin for WordPress is vulnerable to Sensit…7.5
- CVE-2026-22680OpenViking versions prior to 0.3.3 contain a missing authori…6.9
- CVE-2026-22681OpenViking before 0.3.4 contains a server-side request forge…8.5
Are you affected by CVE-2026-22676?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
