CVE-2026-39253: High severity Pivotal Pivotal CRM vulnerability
Published Jun 23, 2026
·Updated
An issue in Pivotal CRM v.6.6.04.08 allows a remote attacker to execute arbitrary code via the Pivotal.Core.Common.dll and Pivotal.Engine.Client.Services.Conversion.dll components.
Affected Software
1 affected component
Pivotal Pivotal CRM=6.6.04.08
Event History
Jun 23, 2026
CVE Published
via MITRE·12:00 AM
Data Sourced
via MITRE·12:00 AM
Description
Data Sourced
via NVD·08:16 PM
DescriptionSeverityWeakness
Frequently Asked Questions
1
What is the severity of CVE-2026-39253?
CVE-2026-39253 has a high severity rating of 8.1 according to the CVSS 3.1 scoring system.
2
How do I fix CVE-2026-39253?
To mitigate CVE-2026-39253, it is recommended to update Pivotal CRM to a patched version that addresses the vulnerability.
3
What are the potential impacts of CVE-2026-39253?
If exploited, CVE-2026-39253 can allow a remote attacker to execute arbitrary code within the Pivotal CRM system.
4
Who is affected by CVE-2026-39253?
CVE-2026-39253 affects users of Pivotal CRM version 6.6.04.08.
5
How was CVE-2026-39253 discovered?
CVE-2026-39253 was identified due to vulnerabilities found in the Pivotal.Core.Common.dll and Pivotal.Engine.Client.Services.Conversion.dll components.