CVE-2026-9634

A security issue exists within the Redundancy Module Configuration Tool. The RMConfigTool.exe binary searches directories in the system path for a required DLL, and one or more of these directories may be writable by standard (non-administrator) users due to incorrect default permissions. If a local attacker places a malicious DLL in such a directory and an administrator subsequently runs the tool, the malicious DLL is loaded into the elevated process and executes with Administrator/SYSTEM privileges.

  • Published Sep 1, 2026
  • CVSS 7.0 high
  • 0.1% chance of exploitation in the next 30 days (EPSS)

Affected software

CVE-2026-9634 at the National Vulnerability Database