HIGH 7.5 NVD
CVE-2026-27557
An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's priva
An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's private keys to be read.
References
- https://www.certvde.com/en/advisories/VDE-2026-014/
- https://www.certvde.com/en/advisories/VDE-2026-027/
- https://www.certvde.com/en/advisories/VDE-2026-028/
This high severity vulnerability with a CVSS score of 7.5 was published on 2026-09-16 via NVD.
vulnfeed aggregates 14123 vulnerabilities from NVD, CISA KEV,
Ubuntu, Debian, Red Hat, Kubernetes, Exploit-DB, OSS-Security, GitHub and OpenStack — updated every 4 hours.