{"id":"CVE-2026-44629","title":"Improper access control to the Synergis Softwire installation folder","summary":"Improper access control to the Synergis Softwire installation folder. This vulnerability affects Streamvault all-in-one appliances (SV-100E and SV-300E series) and Synergis Softwire installed on Windows servers.","severity":"high","cvss":7.9,"cvssVector":"CVSS:3.1/AV:L/AC:L/PR:L/UI:N/S:C/C:H/I:L/A:L","cwe":["CWE-922"],"vendor":"Genetec Inc.","product":"Synergis Softwire","affected":["synergis_softwire (all versions)"],"published":"2026-08-28","updated":"2026-09-09","sourceUpdated":"2026-09-09T18:16:57.667","source":"NVD","sourceUrl":"https://nvd.nist.gov/vuln/detail/CVE-2026-44629","references":[{"url":"https://techdocs.genetec.com/r/en-US/Security-Updates-for-SynergisTM-Softwire-12.0/Resolved-vulnerabilities-in-Synergis-Softwire-12.0.2","label":"security@genetec.com"},{"url":"https://techdocs.genetec.com/r/en-US/Security-Updates-for-SynergisTM-Softwire-12.2/Resolved-vulnerabilities-in-Synergis-Softwire-12.2.0","label":"security@genetec.com"}],"tags":["nvd","cve.org"],"ssvc":{"exploitation":"none","automatable":"no","technicalImpact":"partial","timestamp":"2026-08-28T15:31:56.839710Z"},"epss":0.00105,"epssPercentile":0.01202,"ingestedAt":"2026-09-09T18:17:58.315Z","slug":"CVE-2026-44629","body":"## Overview\n\nImproper access control to the Synergis Softwire installation folder. This vulnerability affects Streamvault all-in-one appliances (SV-100E and SV-300E series) and Synergis Softwire installed on Windows servers.\n\n## Remediation\n\nRefer to the linked advisories for vendor-supplied fixes and affected version ranges.","depth":"twilight","depthScore":43,"depthScoreParts":{"impact":43.5,"likelihood":0,"exploitation":0,"ransomware":0},"changes":[]}