Vulnerability Details CVE-2026-3000
IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary DLL files from a remote source and execute them.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 39.4%
CVSS Severity
CVSS v3 Score 9.8
Products affected by CVE-2026-3000
-
cpe:2.3:a:changingtec:idexpert:2.7.3.230719
-
cpe:2.3:a:changingtec:idexpert:2.8.4.250925