Security Advisory

CVE-2026-44943

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2026-07-29 12:58:49
Last updated 2026-07-29 14:00:28
Assigner suse
CVSS score not scored
State PUBLISHED

Description

An Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in open-iscsi allows remote MITM attackers  to create root-owned files outside the database and inject lines into the record. This issue affects open-iscsi: from through 668ca1df9c9a1e9bdd5c999ae1d67c9c8909237e.