Description

Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose a deprecated .NET Remoting TCP channel that allows remote unauthenticated attackers to leak NTLMv2 machine-account hashes by supplying a Windows UNC path as a target file argument through object-unmarshalling techniques. Attackers can capture the leaked NTLMv2 hash and relay it to other hosts to achieve privilege escalation or lateral movement depending on network configuration and patch level.

INFO

Published Date :

2026-04-14T21:21:21.739Z

Last Modified :

2026-04-16T13:50:58.130Z

Source :

VulnCheck
AFFECTED PRODUCTS

The following products are affected by CVE-2026-39906 vulnerability.

Vendors Products
Unisys
  • Webperfect Image Suite
REFERENCES

Here, you will find a curated list of external links that provide in-depth information to CVE-2026-39906.

CVSS Vulnerability Scoring System

Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability