CVE-2026-4170Disclosure

LOWCVSS 8.9 · HIGH

Exploit discussion active in current signal (3 latest mentions)

Immediate actions

  • Patch affected systems immediately
  • Hunt for exploitation attempts and persistence artifacts
  • Increase monitoring for publicly documented tradecraft

Recommended action window: High priority (within 72h)

NVD description

A weakness has been identified in Topsec TopACM 3.0. Affected by this vulnerability is an unknown functionality of the file /view/systemConfig/management/nmc_sync.php of the component HTTP Request Handler. Executing a manipulation of the argument template_path can lead to os command injection. The attack can be executed remotely. The exploit has been made available to the public and could be used for attacks. The vendor was contacted early about this disclosure but did not respond in any way.

2.0/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-77CWE-78

Priority

LOW

Exploitation

NONE

PoC

YES

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Public PoC is present in monitored signal
  • Patch or workaround signal is available
  • 7 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • PoC mentioned or linked in 1 signal
  • Patch or workaround mentioned in 1 signal
  • Technical details provided in 5 signals
  • Disclosure: 5 classified signals
  • Exploit: 1 classified signal
  • Peaked 1d ago at 3 mentions (2026-03-15); latest day: 3
  • 7 total mentions across 3 days

Deep dive

Activity timeline7 mentions / 3d
01223Mentions · 2026-03-14: 1Mentions · 2026-03-15: 3Mentions · 2026-03-16: 3PoC Mentioned / Linked · 2026-03-15: 1Patch / Workaround · 2026-03-16: 1Technical Details · 2026-03-15: 2Technical Details · 2026-03-16: 303-1403-1503-16
Signal classification3 categories
Disclosure
571.4%
Exploit
114.3%
Patch
114.3%
Referenced assets6 URLs
Classification over time
DateTotalLabels
2026-03-141
Disclosure1
2026-03-153
Disclosure2Exploit1
2026-03-163
Disclosure2Patch1
Full discourse7 posts
  • Orizon@OrizonCyber
    Patch

    🚨 CVE-2026-4170 — CVSS 9.8/10 ██████████ A weakness has been identified in Topsec TopACM 3.0. Affected by this vulnerability is an unknown functionality of the... Severity: CRITICAL Patch now. #cybersecurity #CVE https://t.co/cjvsTw9dkK

    Post summary

    The tweet reports a critical CVE-2026-4170 with a CVSS of 9.8, affecting Topsec TopACM 3.0, and announces that a patch is now available.

    1000025
    6 followersView on X
  • The Hacker Wire@TheHackerWire
    Disclosure

    🔴 CVE-2026-4170 - Critical A weakness has been identified in Topsec TopACM 3.0. Affected by this vulnerability is an unknown functionality of the file /view/systemConfig/management/nmc_sync.php of the component HTTP... https://www.thehackerwire.com/vulnerability/CVE-2026-4170/ https://t.co/OSorkfoVop

    Post summary

    The post announces a new critical vulnerability (CVE‑2026‑4170) in Topsec TopACM 3.0, noting the affected file but providing no evidence of exploitation, exploits, or patches.

    0000046
    136 followersView on X
  • CVEFind.com@CveFindCom
    Disclosure

    [CVE-2026-4170: CRITICAL] Critical vulnerability in Topsec TopACM 3.0 discovered in /view/systemConfig/management/nmc_sync.php component. Allows remote OS command injection. Vendor unresponsive to disclosure.#cve,CVE-2026-4170,#cybersecurity https://cvefind.com/CVE-2026-4170

    Post summary

    CVE-2026-4170 is a critical remote OS command injection flaw discovered in Topsec TopACM 3.0's /view/systemConfig/management/nmc_sync.php component, with no patch or evidence of exploitation reported yet.

    0000045
    601 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-4170 A weakness has been identified in Topsec TopACM 3.0. Affected by this vulnerability is an unknown functionality of the file /view/systemConfig/management/nmc_sync.php o… https://www.cve.org/CVERecord?id=CVE-2026-4170

    Post summary

    CVE-2026-4170 describes a weakness in Topsec TopACM 3.0 affecting an unknown functionality in /view/systemConfig/management/nmc_sync.php.

    00000116
    56.7K followersView on X
  • CyberDudeBivash® | Global Cybersecurity Company@cyberbivash
    Disclosure

    🚨 CYBERDUDEBIVASH SENTINEL APEX ALERT 🚨 Threat: CVE-2026-4170 - Topsec TopACM HTTP Request nmc_sync.php os command injection Intel Report: https://ift.tt/ge9J5Sk

    Post summary

    The text announces a newly identified OS command injection flaw (CVE‑2026‑4170) in Topsec TopACM’s nmc_sync.php, with a referenced intel report for more details.

    0000039
    336 followersView on X
  • 0day Signal@0dayPublishing
    Exploit

    🚨 CVE-2026-4170: Topsec T... Remote RCE via template_path parameter in TopACM's nmc_sync.php - public exploit available and vendor ghosted the disclosure. #RCE #TopACM #0day. https://zerodaysignal.com/vulnerability/CVE-2026-4170 #netsec #vulnerability #CVE #sysadmin #zeroday

    Post summary

    A public exploit for CVE‑2026‑4170 has been released, enabling remote code execution via a template_path parameter in TopACM's nmc_sync.php, while the vendor has not addressed the issue.

    00000131
    150 followersView on X
  • VulDB 🛡@vuldb
    Disclosure

    A new vulnerability with increased severity was disclosed for Topsec TopACM (CVE-2026-4170) https://vuldb.com/?id.351077

    Post summary

    The post announces the new CVE-2026-4170 vulnerability for Topsec TopACM, noting an increase in severity, but provides no further technical details, PoC, exploit code, or patch information.

    0000089
    2.1K followersView on X

Explore more