Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2026-16531

Опубликовано: 30 июл. 2026
Источник: debian
EPSS Низкий

Описание

An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
pcpfixed7.2.0-1package
pcpno-dsatrixiepackage

Примечания

  • https://bugzilla.redhat.com/show_bug.cgi?id=2506037

  • Fixed by: https://github.com/performancecopilot/pcp/commit/dd6ed05f143f97e00198cb4b0180c6375d758cbe (7.2.0)

EPSS

Процентиль: 30%
0.00357
Низкий

Связанные уязвимости

CVSS3: 5.3
ubuntu
около 2 месяцев назад

An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.

CVSS3: 5.3
redhat
около 2 месяцев назад

An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.

CVSS3: 5.3
nvd
около 2 месяцев назад

An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.

CVSS3: 5.3
github
около 2 месяцев назад

An unauthenticated remote attacker can exploit a path traversal vulnerability in the PCP pmproxy logger servlet using a crafted hostname. This allows arbitrary file and directory creation, potentially leading to a denial of service.

suse-cvrf
28 дней назад

Security update for pcp

EPSS

Процентиль: 30%
0.00357
Низкий