PT-2026-50505 · Rti · Rti Connext Professional
CVE-2026-2675
·
Published
2026-06-17
·
Updated
2026-06-17
CVSS v3.1
6.5
Medium
| Vector | AV:N/AC:L/PR:L/UI:N/S:U/C:N/I:H/A:N |
Name of the Vulnerable Software and Affected Versions
Connext Professional versions 7.4.0 through 7.6.x
Connext Professional versions 7.0.0 through 7.3.1.2
Connext Professional versions 6.1.0 through 6.1.x
Connext Professional versions 6.0.0 through 6.0.x
Connext Professional versions 5.3.0 through 5.3.x
Description
Missing authentication for a critical function in the Security Plugins of RTI Connext Professional allows an attacker to fake the source of data.
Recommendations
Update versions 7.4.0 through 7.6.x to version 7.7.0.
Update versions 7.0.0 through 7.3.1.2 to version 7.3.1.3.
Update versions 6.1.0 through 6.1.x to the latest 6.1 patch.
Update versions 6.0.0 through 6.0.x to the latest 6.0 patch.
Update versions 5.3.0 through 5.3.x to the latest 5.3 patch.
Fix
Missing Authentication
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Rti Connext Professional