PatchSiren

PatchSiren cyber security CVE debrief

CVE-2026-32325 Fsas Technologies Inc. CVE debrief

A privilege chaining vulnerability in ServerView Agents for Windows V11.60.04 and earlier allows a local authenticated attacker to escalate to SYSTEM privileges. The vulnerability was published on 2026-06-01 and carries a HIGH severity CVSS score of 8.5. The affected product is ServerView Agents for Windows, with the vendor identified as FUJITSU based on the fsastech.com advisory reference. The issue is classified under CWE-268 (Privilege Chaining). No known exploitation in ransomware campaigns has been reported, and the vulnerability is not listed in CISA KEV.

Vendor
Fsas Technologies Inc.
Product
ServerView Agents for Windows
CVSS
HIGH 8.5
CISA KEV
Not listed in stored evidence
Original CVE published
2026-06-01
Original CVE updated
2026-07-22
Advisory published
2026-06-01
Advisory updated
2026-07-22

Who should care

Organizations running FUJITSU ServerView Agents for Windows V11.60.04 or earlier on production servers. System administrators responsible for Windows server hardening and privilege management. Security teams monitoring for local privilege escalation vectors in data center and enterprise environments.

Technical summary

The vulnerability exists in ServerView Agents for Windows versions V11.60.04 and earlier. A local authenticated attacker with the ability to log in to the affected server can exploit a privilege chaining weakness (CWE-268) to obtain SYSTEM-level privileges. The CVSS:4.0 vector indicates local attack vector (AV:L), low attack complexity (AC:L), low privileges required (PR:L), no user interaction (UI:N), and high impact to confidentiality, integrity, and availability of the vulnerable system (VC:H/VI:H/VA:H). The vulnerability does not affect subsequent system scope (SC:N/SI:N/SA:N).

Defensive priority

HIGH

Recommended defensive actions

  • Apply the vendor-provided update for ServerView Agents for Windows beyond V11.60.04 as referenced in the FUJITSU security advisory.
  • Restrict local interactive logon to servers running affected ServerView Agents to authorized administrators only.
  • Monitor for anomalous privilege escalation attempts on systems where ServerView Agents are installed.
  • Review and validate vendor attribution during triage, as current source confidence is low.

Evidence notes

Vendor attribution is inferred from the fsastech.com domain (FUJITSU's security portal) and JPCERT/CC coordination. The vendor field in source data is marked low-confidence and needs review.

Sources and references

Verified primary and authoritative sources

  • CVE-2026-32325 CVE Program record

    Publisher, destination, and source semantics verified

    URL: https://www.cve.org/CVERecord?id=CVE-2026-32325

    CVE Program - Official CVE Program record with source-provided CVE metadata.

  • CVE-2026-32325 NVD vulnerability detail

    Publisher, destination, and source semantics verified

    URL: https://nvd.nist.gov/vuln/detail/CVE-2026-32325

    NIST National Vulnerability Database - Official NIST NVD detail page and source-specific vulnerability assessment.

Supplemental references

Methodology and review provenance

AI-assisted synthesis based on stored public vulnerability evidence. System validation, approval state, and publication status do not by themselves establish human review of this revision. PatchSiren helps prioritize defensive review and does not prove exposure or remediation on any system.