CVE-2026-52111

9.8

Haierkeys · fast-note-sync-service

An unauthenticated remote attacker can escalate privileges by exploiting an exposed authTokenKey within the admin configuration endpoint of fast-note-sync-service versions 2.13.7 and earlier.

Executive summary

A critical vulnerability in fast-note-sync-service allows unauthenticated remote attackers to gain full administrative control, posing a severe risk to system confidentiality, integrity, and availability.

Vulnerability

This vulnerability involves an insecure configuration endpoint that inadvertently exposes a sensitive authTokenKey, allowing an unauthenticated remote attacker to bypass security controls and escalate privileges.

Business impact

The exposure of the authentication token key grants attackers the ability to impersonate administrative users, leading to unauthorized access to sensitive data, potential system reconfiguration, or complete takeover of the affected service. Given the CVSS score of 9.8, this flaw represents a maximum-severity risk that could facilitate full system compromise and significant operational disruption.

Remediation

Immediate Action: Since no official patch is currently available, restrict network access to the administrative configuration endpoint via firewall rules to ensure it is not reachable from untrusted networks.

Proactive Monitoring: Monitor server access logs for unusual requests directed at the administrative configuration endpoint and investigate any unauthorized attempts to retrieve configuration keys.

Compensating Controls: Implement a Web Application Firewall (WAF) rule to block traffic patterns associated with the admin configuration endpoint until a vendor-supplied security update can be applied.

Exploitation status

Public Exploit Available: No. While a technical write-up exists, there is no confirmed public exploit (Metasploit or ExploitDB) available at this time.

Analyst recommendation

The severity of this vulnerability necessitates immediate defensive action. Administrators should treat the fast-note-sync-service as compromised if the admin configuration endpoint has been exposed to the public internet. Apply the recommended network restrictions immediately and monitor for vendor updates to address the underlying code flaw.

History

CVE Brief tracked this CVE 5 days before it had a CVSS score.

  1. Disclosed CVE record published
  2. Collected by CVE Brief No CVSS score yet; tracked as early warning
  3. CVSS score assigned 9.8 (3.1)
  4. Analyst report written
  5. Published in the daily brief critical section, early-warning entry

Sources