Description
Improper Access Control vulnerability in the Removable Media Validation function of TXOne Networks products allows a local attacker with administrator privileges to bypass the file lockdown mechanism, resulting in unauthorized file transfer to the victim device. The attacker needs to deploy unauthorized file on the removable media in advance. This issue affects SafePortAgent: before 3.2.5024; StellarProtect: from 3.2.4011 before 5.0.1083.
Published: 2026-07-17
Score: 6.7 Medium
EPSS: < 1% Very Low
KEV: No
Impact: n/a
Action: n/a
AI Analysis

Impact

Improper access control in the removable media validation function allows a local attacker with administrative privileges to bypass the file lockdown mechanism, enabling the unauthorized transfer of files to the victim device. The attacker must have placed an unauthorized file on the removable media beforehand. The result is that privileged local users can move files into protected areas, potentially exposing sensitive data or permitting further malicious activity.

Affected Systems

TXOne Networks products SafePortAgent versions earlier than 3.2.5024 and StellarProtect versions from 3.2.4011 through 5.0.1082 are affected. Administrators managing these deployments are at risk when removable media is used.

Risk and Exploitability

The CVSS score of 6.7 classifies the issue as medium severity, but the EPSS score of less than 1 % indicates a very low probability of exploitation. The vulnerability is not listed in CISA’s KEV catalog. Based on the description, it is inferred that exploitation requires a local administrator with physical or logical access to the removable media to pre‑load a malicious file, after which the file can be transferred to the system without restriction. The attack path is therefore limited to environments where administrators have full control of device media but are unaware of the lockdown bypass.

Generated by OpenCVE AI on August 4, 2026 at 07:10 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Update SafePortAgent to version 3.2.5024 or later from TXOne Networks.
  • Update StellarProtect to version 5.0.1083 or later from TXOne Networks.
  • Limit administrator privileges on devices that use SafePortAgent or StellarProtect to the minimum necessary for legitimate work.
  • Disable removable media use or enforce strict file validation policies when removable media is not required.

Generated by OpenCVE AI on August 4, 2026 at 07:10 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Tue, 04 Aug 2026 07:30:00 +0000

Type Values Removed Values Added
Title Local Administrator Can Bypass File Lockdown on TXOne Networks Removable Media

Sat, 01 Aug 2026 09:00:00 +0000

Type Values Removed Values Added
Title Local Administrator Can Bypass Removable Media File Lockdown in TXOne Networks SafePortAgent and StellarProtect

Tue, 28 Jul 2026 00:00:00 +0000

Type Values Removed Values Added
Title Local Administrator Can Bypass Removable Media File Lockdown in TXOne Networks SafePortAgent and StellarProtect

Mon, 27 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Weaknesses CWE-284

Sun, 26 Jul 2026 10:00:00 +0000

Type Values Removed Values Added
Title Local Administrator Escalation to Bypass File Lockdown in TXOne Networks
Weaknesses CWE-284

Thu, 23 Jul 2026 22:45:00 +0000

Type Values Removed Values Added
First Time appeared Txone Networks
Txone Networks safeportagent
Txone Networks stellarprotect
Vendors & Products Txone Networks
Txone Networks safeportagent
Txone Networks stellarprotect

Wed, 22 Jul 2026 20:45:00 +0000

Type Values Removed Values Added
Title Local Administrator Escalation to Bypass File Lockdown in TXOne Networks
Weaknesses CWE-284

Fri, 17 Jul 2026 14:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Fri, 17 Jul 2026 05:00:00 +0000

Type Values Removed Values Added
Description Improper Access Control vulnerability in the Removable Media Validation function of TXOne Networks products allows a local attacker with administrator privileges to bypass the file lockdown mechanism, resulting in unauthorized file transfer to the victim device. The attacker needs to deploy unauthorized file on the removable media in advance. This issue affects SafePortAgent: before 3.2.5024; StellarProtect: from 3.2.4011 before 5.0.1083.
References
Metrics cvssV3_1

{'score': 4.4, 'vector': 'CVSS:3.1/AV:L/AC:L/PR:H/UI:N/S:U/C:N/I:H/A:N'}

cvssV4_0

{'score': 6.7, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:H/UI:N/VC:N/VI:H/VA:N/SC:N/SI:N/SA:N'}


Subscriptions

Txone Networks Safeportagent Stellarprotect
cve-icon MITRE

Status: PUBLISHED

Assigner: TXOne

Published:

Updated: 2026-07-27T14:07:43.598Z

Reserved: 2026-04-23T09:55:13.822Z

Link: CVE-2026-41993

cve-icon Vulnrichment

Updated: 2026-07-17T13:10:32.049Z

cve-icon NVD

No data.

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-08-04T07:15:03Z

Weaknesses