Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-36cw-9hwh-mr3c

Опубликовано: 29 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS4: 6.9

Описание

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record.

This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record.

This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

EPSS

Процентиль: 26%
0.0033
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-22

Связанные уязвимости

ubuntu
10 дней назад

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record. This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

CVSS3: 8.6
redhat
10 дней назад

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record. This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

nvd
10 дней назад

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record. This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.

msrc
2 дня назад

remote limited file-write as root via discovery in open-iscsi

debian
10 дней назад

An Improper Limitation of a Pathname to a Restricted Directory ('Path ...

EPSS

Процентиль: 26%
0.0033
Низкий

6.9 Medium

CVSS4

Дефекты

CWE-22