CVE-2026-32297: exploitation status and patch state
CVE-2026-32297 · CVSS 7.5 HIGH · EPSS 1%
The Angeet ES3 KVM allows a remote, unauthenticated attacker to write arbitrary files, including configuration files or system binaries. Modified configuration files or system binaries could allow an attacker to take complete control of a vulnerable system.
Is CVE-2026-32297 exploited?
Not in the CISA KEV catalog.
EPSS puts exploitation in the next 30 days at 1%.
Public exploit code: none found in monitored sources.