← Volver al buscador de CVEs

CVE-2026-49233

Routinator

Descripción

Routinator does not properly check the module component of rsync URIs, which are used to create the file system paths for the Routinator cache. This allows for path traversal by having a module name containing .., potentially providing an attacker access to the entire Routinator rsync cache.

CVSS 7.5EPSS 0.445%Riesgo 0.78
Ver fuente
Publicación
2026-06-08 15:16:47
Versiones afectadas
unknown
Tipo
Core software
Última modificación
2026-07-23 07:10:00
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N