CVE-2026-26333Disclosure(calero / verasmart)

LOWCVSS 9.8 · CRITICAL

Signal is active with 2 mentions in latest observed window

Immediate actions

  • Patch calero verasmart systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Calero VeraSMART versions prior to 2022 R1 expose an unauthenticated .NET Remoting HTTP service on TCP port 8001. The service publishes default ObjectURIs (including EndeavorServer.rem and RemoteFileReceiver.rem) and permits the use of SOAP and binary formatters with TypeFilterLevel set to Full. An unauthenticated remote attacker can invoke the exposed remoting endpoints to perform arbitrary file read and write operations via the WebClient class. This allows retrieval of sensitive files such as WebRoot\\web.config, which may disclose IIS machineKey validation and decryption keys. An attacker can use these keys to generate a malicious ASP.NET ViewState payload and achieve remote code execution within the IIS application context. Additionally, supplying a UNC path can trigger outbound SMB authentication from the service account, potentially exposing NTLMv2 hashes for relay or offline cracking.

0.5/ 10 priority

Sources & remediation

Other references
Weakness type (CWE)
CWE-306CWE-502

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • verasmart

Threat summary

  • Patch or workaround signal is available
  • 3 mentions across 2 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 3 signals
  • Disclosure: 2 classified signals
  • Peaked at 2 mentions on most recent observed day (2026-02-14)
  • 3 total mentions across 2 days

Affected systems

Vendors
Products
verasmart

1 version affected across 1 product

Deep dive

Activity timeline3 mentions / 2d
01122Mentions · 2026-02-13: 1Mentions · 2026-02-14: 2Patch / Workaround · 2026-02-14: 1Technical Details · 2026-02-13: 1Technical Details · 2026-02-14: 202-1302-14
Signal classification2 categories
Disclosure
266.7%
Patch
133.3%
Referenced assets3 URLs
Classification over time
DateTotalLabels
2026-02-131
Disclosure1
2026-02-142
Disclosure1Patch1
Full discourse3 posts
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-26333 Unauthenticated Remote Code Execution in Calero VeraSMART .NET Remoting Service https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-26333

    Post summary

    The text reports CVE-2026-26333 as an unauthenticated remote code execution flaw in Calero VeraSMART .NET Remoting Service, but does not provide PoC, exploit code, patch, or active exploitation details.

    0001054
    4.0K followersView on X
  • OffSeq | Adversary Tactics for Cyber Resilience@offseq
    Patch

    🚨 CRITICAL RCE in Calero VeraSMART (pre-2022 R1): Unauthenticated attackers can access sensitive configs & execute code via port 8001. Restrict access & upgrade ASAP! 🔒 https://radar.offseq.com/threat/cve-2026-26333-cwe-306-missing-authentication-for--bbf1e7d2 #OffSeq #CVE2026... https://t.co/ub1SmUGR0M

    Post summary

    The tweet highlights a critical RCE in Calero VeraSMART that allows unauthenticated attackers to execute code via port 8001, and urges users to restrict access and upgrade immediately.

    0000072
    268 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-26333 Calero VeraSMART versions prior to 2022 R1 expose an unauthenticated .NET Remoting HTTP service on TCP port 8001. The service publishes default ObjectURIs (including … https://www.cve.org/CVERecord?id=CVE-2026-26333

    Post summary

    The post announces CVE‑2026‑26333, describing an unauthenticated .NET Remoting HTTP service on port 8001 that exposes default ObjectURIs in Calero VeraSMART devices.

    00000255
    56.5K followersView on X
CPE platform detail2 entries

2 of 2 entries

PartVendorProductVersionTarget SWTarget HW
Appcaleroverasmart---
Appcaleroverasmart2022.0--

Explore more