What is CVE-2026-50602?
CVE-2026-50602 is a security vulnerability in Planet9 caused by incorrect file permissions on an executable used by its background service. The service operates with SYSTEM privileges, but the executable grants excessive permissions to non-administrative users, potentially allowing privilege escalation. Users of Planet9 should apply security patches and restrict permissions on the affected files.
Azərbaycanca: CVE-2026-50602 Planet9 proqramında aşkar edilmiş təhlükəsizlik zəifliyidir. Planet9 arxa plan xidməti tərəfindən istifadə olunan icra edilə bilən fayla səhv fayl icazələri təyin edilib, bu isə qeyri-administrator istifadəçilərə həddindən artıq hüquqlar verir. Xidmət SYSTEM səviyyəsində işlədiyi üçün zəiflikdən uğurla istifadə edilməsi imtiyazların artırılmasına (privilege escalation) gətirib çıxara bilər. Planet9 istifadəçiləri təhlükəsizlik yeniləmələrini tətbiq etməli və təsirlənmiş fayllar üçün icazələri məhdudlaşdırmalıdır.
Related CVEs
link basis: same weakness class CWE-732
FAQ2
What risk does exploiting CVE-2026-50602 pose?
This vulnerability can lead to privilege escalation because the Planet9 background service operates with SYSTEM privileges.
What should Planet9 users do to protect against CVE-2026-50602?
Users should apply security patches and restrict permissions on the affected files.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.