top of page
perceptive_background_267k.jpg

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to d…

Published:

1 March 2026 at 23:00:00

Alert date:

2 March 2026 at 08:01:55

Source:

nvd.nist.gov

Click to open the original link from this advisory

Operating Systems, Identity & Access

IDExpert Windows Logon Agent developed by Changing contains a critical Remote Code Execution vulnerability (CVE-2026-3000). The vulnerability allows unauthenticated remote attackers to force the system to download arbitrary DLL files from remote sources and execute them. This represents a severe security flaw that could enable complete system compromise without requiring authentication. The vulnerability affects Windows authentication systems and could potentially be exploited for widespread attacks against enterprise environments using the IDExpert solution.

Technical details

Mitigation steps:

Affected products:

IDExpert Windows Logon Agent

Related links:

Related CVE's:

Related threat actors:

IOC's:

This article was created with the assistance of AI technology by Perceptive.

© 2025 by Perceptive Security. All rights reserved.

email: info@perceptivesecurity.com

Disclaimer: Deze website toont informatie afkomstig van externe bronnen. Perceptive aanvaardt geen verantwoordelijkheid voor de inhoud, juistheid of volledigheid van deze informatie.

bottom of page