CVE-2026-35082
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
Zwakheid
The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.
Getroffen producten
- mbs-solutions universal_gateway_firmware
- mbs-solutions double-a_profibus
- mbs-solutions double-a_x-link
- mbs-solutions double-x_can
- mbs-solutions double-x_dali
- mbs-solutions double-x_knx
- mbs-solutions double-x_lon
- mbs-solutions double-x_m-bus
Bronnen
Vind de bug voordat een aanvaller dat doet.
Log in met GitHub en start je eerste audit binnen een minuut. Voor het gratis abonnement is geen creditcard nodig.