CVE-2026-30896

The installer for Qsee Client versions 1.0.1 and prior insecurely load Dynamic Link Libraries (DLLs). When a user is directed to place some malicious DLL to the same directory and execute the affected installer, then arbitrary code may be executed with the administrative privilege.
References
Link Resource
https://jvn.jp/en/jp/JVN11676807/ Third Party Advisory
https://www.q-see.com/pages/download Product
Configurations

Configuration 1 (hide)

cpe:2.3:a:q-see:qsee_client:*:*:*:*:*:windows:*:*

History

No history.

Information

Published : 2026-03-09 06:16

Updated : 2026-03-10 18:47


NVD link : CVE-2026-30896

Mitre link : CVE-2026-30896

CVE.ORG link : CVE-2026-30896


JSON object : View

Products Affected

q-see

  • qsee_client
CWE
CWE-427

Uncontrolled Search Path Element