CVE-2026-53476
—CVSS 3.1
9.6 critical
EPSS
<1%p21
Published
()
Modified
Description
A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.
- Vendors
- kubev2v
- Products
- assisted migration agent
- Weakness
- CWE-59, CWE-22
- Vector
- CVSS:3.1/AV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
In the news0 stories
No ingested article mentions this CVE yet.