Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-8662

Опубликовано: 25 июн. 2026
Источник: nvd
CVSS3: 3.3
CVSS3: 4.3
EPSS Низкий

Описание

Path Traversal vulnerability in the create_archive function of Rapid7 InsightConnect Compression Plugin on Linux allows authenticated attackers to write to unintended file paths via crafted filename input. The impact is limited to file corruption as content cannot be controlled by the attacker.

Уязвимые конфигурации

Конфигурация 1

Одновременно

cpe:2.3:a:rapid7:insightconnect_compression:*:*:*:*:*:rapid7:*:*
Версия до 2.0.3 (исключая)
cpe:2.3:o:linux:linux_kernel:-:*:*:*:*:*:*:*

EPSS

Процентиль: 12%
0.00216
Низкий

3.3 Low

CVSS3

4.3 Medium

CVSS3

Дефекты

CWE-22

Связанные уязвимости

CVSS3: 3.3
github
около 1 месяца назад

Path Traversal vulnerability in the create_archive function of Rapid7 InsightConnect Compression Plugin on Linux allows authenticated attackers to write to unintended file paths via crafted filename input. The impact is limited to file corruption as content cannot be controlled by the attacker.

EPSS

Процентиль: 12%
0.00216
Низкий

3.3 Low

CVSS3

4.3 Medium

CVSS3

Дефекты

CWE-22