CVE-2026-50255 PUBLISHED

Assigner: jpcert
Reserved: 09.06.2026 Published: 16.06.2026 Updated: 16.06.2026

Incorrect default permissions issue exists in Optical Disc Archive Software for Windows 5.5.3 and earlier. If this vulnerability is exploited, arbitrary code may be executed with SYSTEM privileges.

Metrics

CVSS Vector: CVSS:4.0/AV:L/AC:L/AT:P/PR:L/UI:P/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
CVSS Score: 5.4

Product Status

Vendor Sony Corporation
Product Optical Disc Archive Software for Windows
Versions
  • Version 5.5.3 and earlier is affected

References

Problem Types