Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7j4w-x8x8-5mvg

Опубликовано: 10 июн. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 9.6

Описание

A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.

A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.

EPSS

Процентиль: 21%
0.00291
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-22
CWE-59

Связанные уязвимости

CVSS3: 9.6
redhat
около 2 месяцев назад

A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.

CVSS3: 9.6
nvd
около 2 месяцев назад

A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.

EPSS

Процентиль: 21%
0.00291
Низкий

9.6 Critical

CVSS3

Дефекты

CWE-22
CWE-59