Weaver E-cology Critical RCE Actively Exploited | MSSP Advisory
Critical
DateMay 4, 2026
📋Executive Summary
Hackers have been actively exploiting CVE-2026-22679, a critical vulnerability in Weaver E-cology office automation software, since mid-March to execute discovery commands on compromised systems. The vulnerability allows remote code execution without authentication, giving attackers immediate access to internal networks. Weaver E-cology is widely deployed in Asian markets for enterprise resource planning and office automation.
⚠️Why It Matters for MSSPs
Your clients running Weaver E-cology systems have been sitting ducks for three months while attackers used this flaw to map their networks and establish persistence. If you manage any clients with Asian business operations or supply chain connections, they likely have this software deployed somewhere in their environment, and you need to know about every installation immediately.
✅Recommended Action
Audit all client environments for Weaver E-cology installations within 24 hours and isolate any discovered systems until patches can be applied.
🔒Get your first advisory free →
Partner content — get access free
The recommended action is included in your white-labeled advisory — ready to send to clients under your name.
🏷️Threat Category
Zero-Day
Partner MSSPs receive the full advisory — talking points, actions, and social posts — under their own brand.