GHSA-64xx-g8pm-3j7rHighCVSS 7.5

An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php...

Published
September 16, 2026
Last Modified
September 16, 2026

🔗 CVE IDs covered (1)

📋 Description

An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's private keys to be read.

🔗 References (5)