Beveiligingsadvies

CVE-2026-2552

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2026-02-16 11:02:05
Laatst bijgewerkt 2026-02-23 10:08:48
Toegewezen door VulDB
CVSS-score 5.5
Status PUBLISHED

Beschrijving

A vulnerability was identified in ZenTao up to 21.7.8. Affected by this issue is the function delete of the file editor/control.php of the component Committer. Such manipulation of the argument filePath leads to path traversal. Upgrading to version 21.7.9 can resolve this issue. The affected component should be upgraded.