Description
Unisys WebPerfect Image Suite versions 3.0.3960.22810 and 3.0.3960.22604 expose a deprecated .NET Remoting TCP channel that allows remote unauthenticated attackers to leak NTLMv2 machine-account hashes by supplying a Windows UNC path as a target file argument through object-unmarshalling techniques. Attackers can capture the leaked NTLMv2 hash and relay it to other hosts to achieve privilege escalation or lateral movement depending on network configuration and patch level.
INFO
Published Date :
2026-04-14T21:21:21.739Z
Last Modified :
2026-04-16T13:50:58.130Z
Source :
VulnCheck
AFFECTED PRODUCTS
The following products are affected by CVE-2026-39906 vulnerability.
| Vendors | Products |
|---|---|
| Unisys |
|
REFERENCES
Here, you will find a curated list of external links that provide in-depth information to CVE-2026-39906.
CVSS Vulnerability Scoring System
Detailed values of each vector for above chart.
Attack Vector
Attack Complexity
Attack Requirements
Privileges Required
User Interaction
VS Confidentiality
VS Integrity
VS Availability
SS Confidentiality
SS Integrity
SS Availability