Last updated: September 29, 2026 at 8:42 AM UTC
All 891 Vulnerability 357 Breach 144 Threat 383 Defense 7
Tag: connectwise (1 article)Clear

ConnectWise warns of an unpatched ScreenConnect flaw and urges interim mitigation

ConnectWise warned of a new vulnerability in ScreenConnect, its widely used remote-access platform, affecting both cloud and on-premises deployments, and issued temporary mitigations while it prepares a patch. The flaw involves file-transfer behavior in remote-access sessions and has not yet received a CVE identifier. As an interim measure, administrators are told to disable file-transfer permissions in the ScreenConnect console. ScreenConnect is a favorite tool of managed-service providers and IT teams, which also makes it a repeated target: three earlier ScreenConnect flaws are in the exploited-vulnerabilities catalog, two abused in ransomware, and nearly 6,000 instances are exposed online. There is a concurrent campaign spreading malware through rogue ScreenConnect clients.

Check
Apply ConnectWise's interim mitigation now by disabling file-transfer permissions in the ScreenConnect console, restrict access to the platform, and apply the official patch as soon as it ships this week.
Affected
Organizations and managed-service providers running ScreenConnect, cloud and on-premises; the unpatched file-transfer flaw could be abused for attacks, on a platform that grants powerful remote access and is frequently targeted by ransomware.
Fix
Disable file-transfer permissions until patched, limit and monitor who can reach the ScreenConnect console, watch for unauthorized clients and sessions, patch promptly on release, and treat this remote-access tooling as high-value infrastructure.