CVE-2026-24016
Unknown Unknown - Not Provided
Insecure DLL Loading in ServerView Agent Installer Enables Privileged Code Execution

Publication date: 2026-01-21

Last updated on: 2026-02-24

Assigner: JPCERT/CC

Description
The installer of ServerView Agents for Windows provided by Fsas Technologies Inc. may insecurely load Dynamic Link Libraries. Arbitrary code may be executed with the administrator privilege when the installer is executed.
CVSS Scores
EPSS Scores
Probability:
Percentile:
Meta Information
Published
2026-01-21
Last Modified
2026-02-24
Generated
2026-06-16
AI Q&A
2026-01-21
EPSS Evaluated
2026-06-15
NVD
EUVD
Affected Vendors & Products
Showing 2 associated CPEs
Vendor Product Version / Range
fsas_technologies_inc serverview_agents_for_windows to 11.50.06 (exc)
fsas_technologies_inc serverview_agents_for_windows From 11.60.04 (inc)
Helpful Resources
Exploitability
CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-427 The product uses a fixed or controlled search path to find resources, but one or more locations in that path can be under the control of unintended actors.
Attack-Flow Graph
AI Quick Actions
Instant insights powered by AI
Executive Summary

This vulnerability exists in the installer of ServerView Agents for Windows (version 11.50.06 and earlier) by Fsas Technologies Inc. The installer insecurely loads Dynamic Link Libraries (DLLs) due to a DLL search path issue, which can allow an attacker to execute arbitrary code with administrator privileges when the installer is run. [1, 2]

Impact Analysis

If exploited, this vulnerability allows an attacker to execute arbitrary code with administrator privileges on the affected system. This can lead to full system compromise, unauthorized access, data theft, or disruption of services. [1, 2]

Mitigation Strategies

To mitigate this vulnerability, immediately update the ServerView Agents for Windows installer to version V11.60.04 or later, which addresses the DLL search path issue. Download the updated installer from the PRIMERGY product support page provided by Fsas Technologies Inc. Avoid running the vulnerable installer versions (V11.50.06 and earlier) to prevent arbitrary code execution with administrator privileges. [1, 2]

Chat Assistant
Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-24016. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70
EPSS Chart