Back to VulnFeed / CVE-2026-6902
root@hackertop:~/vulnfeed/CVE-2026-6902#
CVE-2026-6902 MEDIUM RCE ⚠ Unpatched · Zero-day◉ PoC 公开 Lifecycle 4/7

Perforce P4 up to 2025.2 Patch 1 code injection

P4 2025.2 Patch 1 3d ago Impact pending confirmation
LIFECYCLE
6.0 CVSS
Vulnerability Detail Mitigation Lifecycle CVSS Assessment
Vulnerability Description
A vulnerability classified as critical was found in Perforce P4 up to 2025.2 Patch 1. Affected by this vulnerability is an unknown part. Upgrading to version 2025.2 Patch 2 eliminates this vulnerability.
Root Cause Analysis
The CWE definition for the vulnerability is CWE-94. The product constructs all or part of a code segment using externally-influenced input from an upstream component, but it does not neutralize or incorrectly neutralizes special elements that could modify the syntax or behavior of the intended code segment.

Impact: As an impact it is known to affect confidentiality, integrity, and availability.

Countermeasure: Upgrading to version 2025.2 Patch 2 eliminates this vulnerability.
Validation (PoC/EXP) - Looking for Contributors
No public PoC yet

Public validation traces already exist. Community contributors can extend them with richer reproduction content.

Contribute Your PoC/EXP
Log in to contribute PoC/EXP content. Log in
Back to VulnFeed
CVE-2026-6902 · CVSS 6.0 · Active Threat