CVE-2026-3000Disclosure(changingtec / idexpert)

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Track advisory updates for patch or workaround availability

Recommended action window: Monitor and triage in normal cycle

NVD description

IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary DLL files from a remote source and execute them.

0.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-494

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

DECLINING

Are you affected?

If you run products in this scope, you should treat this CVE as relevant to your environment.

  • idexpert

Threat summary

  • 12 mentions across 5 observed days
  • Momentum state: declining

What's happening

  • Technical details provided in 11 signals
  • Disclosure: 12 classified signals
  • Peaked 4d ago at 8 mentions (2026-03-02); latest day: 1
  • 12 total mentions across 5 days

Affected systems

Products
idexpert

Deep dive

Activity timeline12 mentions / 5d
02468Mentions · 2026-03-02: 8Mentions · 2026-03-05: 1Mentions · 2026-03-06: 1Mentions · 2026-03-07: 1Mentions · 2026-03-09: 1Technical Details · 2026-03-02: 7Technical Details · 2026-03-05: 1Technical Details · 2026-03-06: 1Technical Details · 2026-03-07: 1Technical Details · 2026-03-09: 103-0203-0503-0603-0703-09
Signal classification1 categories
Disclosure
12100.0%
Referenced assets9 URLs
Classification over time
DateTotalLabels
2026-03-028
Disclosure8
2026-03-051
Disclosure1
2026-03-061
Disclosure1
2026-03-071
Disclosure1
2026-03-091
Disclosure1
Full discourse12 posts
  • DailyCVE@dailycve
    Disclosure

    🔴 Changing IDExpert #Windows Logon Agent, Remote Code Execution, #CVE-2026-3000 (Critical) https://dailycve.com/changing-idexpert-windows-logon-agent-remote-code-execution-cve-2026-3000-critical/

    Post summary

    The tweet announces a critical remote code execution vulnerability (CVE-2026-3000) affecting IDExpert's Windows Logon Agent, providing a link to an article with further details.

    0000036
    166 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3000 (CVSS:9.3, CRITICAL) is Undergoing Analysis. IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated r..https://nvd.nist.gov/vuln/detail/CVE-2026-3000 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    The text provides a brief disclosure of CVE-2026-3000, detailing its CVSS rating and that it allows unauthenticated remote code execution, but it does not mention any PoC, exploit code, or active exploitation.

    0000024
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3000 (CVSS:9.3, CRITICAL) is Undergoing Analysis. IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated r..https://nvd.nist.gov/vuln/detail/CVE-2026-3000 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    CVE‑2026‑3000 is a critical remote code execution flaw in IDExpert Windows Logon Agent that is currently under analysis; the tweet references its NVD entry but provides no PoC, exploit, or patch details.

    0000023
    173 followersView on X
  • CRAC Learning - Tech@cracbot
    Disclosure

    CVE-2026-3000 (CVSS:9.3, CRITICAL) is Awaiting Analysis. IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated r..https://nvd.nist.gov/vuln/detail/CVE-2026-3000 #cybersecurityawareness #cybersecurity #CVE #infosec #hacker #nvd #mitre

    Post summary

    A new critical CVE-2026-3000 has been disclosed, describing a Remote Code Execution vulnerability with high CVSS score, but no exploitation or patch information is available yet.

    0000023
    173 followersView on X
  • ✮ Cymon Skinner ✮@CymonSkinner
    Disclosure

    🚨🔒 Attention all users! 📢 A new vulnerability has been identified: CVE-2026-3000 - Changing IDExpert Windows Logon Agent. This critical flaw allows for remote code execution, posing serious security risks to your systems. Stay informed and protect your data! Make sure to update your software and follow best practices for cybersecurity. 🛡️💻 #CyberSecurity #CVE20263000 #RemoteCodeExecution #IDExpert #StaySafeOnline

    Post summary

    A new CVE-2026-3000 vulnerability in IDExpert Windows Logon Agent allows remote code execution; users are advised to update their software to mitigate the risk.

    0000077
    710 followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-3000 - Changing|IDExpert Windows Logon Agent - Remote Code Execution Intel Report: https://ift.tt/eT83BGm

    Post summary

    A threat alert announces CVE-2026-3000, a remote code execution vulnerability in the Changing IDExpert Windows Logon Agent, with no PoC, exploit, or patch details provided.

    0000047
    342 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    We have just added an important vulnerability affecting Changing IDExpert Windows Logon Agent (CVE-2026-3000) https://vuldb.com/?id.348310

    Post summary

    A new vulnerability, CVE-2026-3000, affecting the Changing IDExpert Windows Logon Agent has been added to vuldb.com, indicating its disclosure but lacking further technical or exploit details.

    0000070
    2.1K followersView on X
  • Vulmon Vulnerability Feed@VulmonFeeds
    Disclosure

    CVE-2026-3000 Remote Code Execution in IDExpert Windows Logon Agent via Arbitrary DLL Download https://vulmon.com/vulnerabilitydetails?qid=CVE-2026-3000

    Post summary

    A new CVE (CVE-2026-3000) has been disclosed, indicating a remote code execution vulnerability in IDExpert Windows Logon Agent via arbitrary DLL download.

    0000066
    4.0K followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-3000: CRITICAL] Critical Remote Code Execution vulnerability found in IDExpert Windows Logon Agent by Changing enables unauthenticated attackers to download and execute DLL files remotely. Stay vigil...#cve,CVE-2026-3000,#cybersecurity https://cvefind.com/CVE-2026-3000

    Post summary

    A critical RCE vulnerability (CVE-2026-3000) in IDExpert Windows Logon Agent allows unauthenticated attackers to download and execute DLL files remotely.

    0000057
    590 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-3000 - Critical IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download arbitrary DLL files ... https://www.thehackerwire.com/vulnerability/CVE-2026-3000/ https://t.co/zi33U03Ptd

    Post summary

    The post announces a critical RCE vulnerability in IDExpert Windows Logon Agent, allowing unauthenticated attackers to download arbitrary DLLs, but no PoC, exploit, patch, or active exploitation details are provided.

    0000055
    122 followersView on X
  • Infoflowcloud@infoflowcloud
    Disclosure

    🚨*CVE* CVE-2026-3000 IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download … https://www.cve.org/CVERecord?id=CVE-2026-3000 ----- Traducción: CVE-2026-3000 IDE… http://infoflow.cloud`

    Post summary

    The post announces CVE-2026-3000, a remote code execution flaw in IDExpert Windows Logon Agent, but provides no PoC, exploit, or mitigation details.

    0000036
    55 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-3000 IDExpert Windows Logon Agent developed by Changing has a Remote Code Execution vulnerability, allowing unauthenticated remote attackers to force the system to download … https://www.cve.org/CVERecord?id=CVE-2026-3000

    Post summary

    The post announces a new RCE vulnerability in IDExpert Windows Logon Agent (CVE-2026-3000), detailing how unauthenticated remote attackers can force the system to download malicious code.

    00000386
    56.6K followersView on X
CPE platform detail1 entries

1 of 1 entries

PartVendorProductVersionTarget SWTarget HW
Appchangingtecidexpert-windows-

Explore more