Updated
Updated · Computerworld · Sep 11
ConnectWise Patches ScreenConnect Flaw CVE-2026-84869 in Version 26.6.5 After 5-Day Warning
Updated
Updated · Computerworld · Sep 11

ConnectWise Patches ScreenConnect Flaw CVE-2026-84869 in Version 26.6.5 After 5-Day Warning

1 articles · Updated · Computerworld · Sep 11

Summary

  • Version 26.6.5 and later patch CVE-2026-84869, a critical ScreenConnect authentication failure that could let attackers transfer and execute files in active remote sessions without authorization or confirmation.
  • Sept. 3 marked ConnectWise’s initial warning to customers, when it told administrators to remove the “TransferFiles” permission from any users with an open support or access session until a fix arrived.
  • ScreenConnect has faced repeated security pressure: ConnectWise said in August it was recovering from a May 2025 nation-state attack that affected several customers, though it reported no customer losses.
  • The patch also follows a 2024 incident in which ConnectWise issued another ScreenConnect fix after reports the product had already been exploited.

Insights

How many networks were silently backdoored by this worm-like ScreenConnect exploit before administrators could even apply the latest patch?
Could your trusted IT support tool be secretly mining crypto and spreading malware through your network right now?