Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 3

Количество 3

nvd логотип

CVE-2026-9108

18 дней назад

A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software does not sanitize or validate file names embedded in the ACD file structure during the project opening procedure, allowing path traversal sequences to escape the intended extraction directory. If exploited, an attacker could craft a malicious ACD project file that results in arbitrary files being written to attacker-controlled locations on the file system, potentially leading to code execution.

EPSS: Низкий
github логотип

GHSA-592c-v2mf-x9pf

18 дней назад

A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software does not sanitize or validate file names embedded in the ACD file structure during the project opening procedure, allowing path traversal sequences to escape the intended extraction directory. If exploited, an attacker could craft a malicious ACD project file that results in arbitrary files being written to attacker-controlled locations on the file system, potentially leading to code execution.

EPSS: Низкий
fstec логотип

BDU:2026-10131

18 дней назад

Уязвимость интегрированной среды проектирования Studio 5000 Logix Designer, связанная с неверным ограничением имени пути к каталогу, позволяющая нарушителю получить несанкционированный доступ на создание файлов и выполнить произвольный код

CVSS3: 6.7
EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2026-9108

A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software does not sanitize or validate file names embedded in the ACD file structure during the project opening procedure, allowing path traversal sequences to escape the intended extraction directory. If exploited, an attacker could craft a malicious ACD project file that results in arbitrary files being written to attacker-controlled locations on the file system, potentially leading to code execution.

0%
Низкий
18 дней назад
github логотип
GHSA-592c-v2mf-x9pf

A path traversal security issue exists within Studio 5000 Logix Designer® due to improper limitation of file paths within ACD project files. The software does not sanitize or validate file names embedded in the ACD file structure during the project opening procedure, allowing path traversal sequences to escape the intended extraction directory. If exploited, an attacker could craft a malicious ACD project file that results in arbitrary files being written to attacker-controlled locations on the file system, potentially leading to code execution.

0%
Низкий
18 дней назад
fstec логотип
BDU:2026-10131

Уязвимость интегрированной среды проектирования Studio 5000 Logix Designer, связанная с неверным ограничением имени пути к каталогу, позволяющая нарушителю получить несанкционированный доступ на создание файлов и выполнить произвольный код

CVSS3: 6.7
0%
Низкий
18 дней назад

Уязвимостей на страницу