CVE-2026-20893
7.8Fujitsu · Security Solution AuthConductor Client Basic V2
An origin validation error in Fujitsu Security Solution AuthConductor Client Basic V2 allows authenticated local users to execute arbitrary code with SYSTEM privileges or modify registry values.
Executive summary
A high-severity origin validation vulnerability in Fujitsu Security Solution AuthConductor Client Basic V2 allows local attackers to achieve full system compromise via privilege escalation.
Vulnerability
The software suffers from an origin validation error (CWE-346) that can be triggered by a local authenticated user. This flaw permits the execution of arbitrary code with SYSTEM privileges or unauthorized modification of registry values on the host system.
Business impact
The ability for a standard user to escalate privileges to SYSTEM level represents a total compromise of the host machine. Given the CVSS score of 7.8, this vulnerability poses a significant risk to organizational infrastructure by potentially allowing attackers to maintain persistence, bypass security controls, and access sensitive data stored on compromised endpoints.
Remediation
Immediate Action: Review the official security advisory provided by Fujitsu at https://www.fmworld.net/biz/common/info/202601acc/ and apply all recommended updates or configuration changes.
Proactive Monitoring: Monitor system logs for unusual process execution patterns or unauthorized modifications to the Windows registry.
Compensating Controls: Restrict local access to the affected workstations to trusted personnel only and implement the principle of least privilege to minimize the potential for local exploitation.
Exploitation status
Public Exploit Available: Unknown
Analyst recommendation
Organizations utilizing Fujitsu Security Solution AuthConductor Client Basic V2 should prioritize applying vendor-supplied updates as soon as they become available. Given the high impact of privilege escalation, administrators must ensure that workstations running this software are patched promptly to prevent local attackers from gaining full control over affected systems.