Cato Networks has 2 CVEs on record. 2 were published in the last 90 days. The median CVSS is 7.7 (high).
CVEs per month
Last 12 months, by publish date
1025/101125/111225/120126/010226/020326/030426/040526/050626/060726/070826/080926/09
- Exploited share
- 0% vs 1% corpus
- Median CVSS
- 7.7
- Publish → KEV
- —
- Last 90 days
- 2 prev 0
2
Total CVEs
0
Critical
0
CISA KEV
0
Exploited
Worst active — by depth score
CVE-2026-10739High· 8.5Cato Networks SDP Client for Windows before 6.12.6 allows a local user to delete arbitrary files with SYSTEM privileges via improper validation of a client-supplied SID over a local IPC named pipe.47CVE-2026-10726Medium· 6.8Cato Windows SDP Client before version 6.12.6 contains an arbitrary file disclosure vulnerability37
Cato Networks vulnerabilities
CVEs affecting Cato Networks, newest first. Open any entry for full detail, references, and exploit status.
2 CVEsRSS
CVE-2026-10726Medium· 6.8Cato Windows SDP Client before version 6.12.6 contains an arbitrary file disclosure vulnerability
Cato Windows SDP Client before version 6.12.6 contains an arbitrary file disclosure vulnerability. A low-privileged local user can cause the Windows service, running as Local System, to read and disclose arbitrary local files due to impr…
▾ SunlitCato Networks · SDP Clientvia NVD
CVE-2026-10739High· 8.5Cato Networks SDP Client for Windows before 6.12.6 allows a local user to delete arbitrary files with SYSTEM privileges via improper validation of a client-supplied SID over a local IPC named pipe.
Cato Networks SDP Client for Windows before 6.12.6 allows a local user to delete arbitrary files with SYSTEM privileges via improper validation of a client-supplied SID over a local IPC named pipe.
▾ TwilightCato Networks · SDP Clientvia NVD