PT-2026-48449 · Unknown · Assisted-Migration-Agent

CVE-2026-53476

·

Published

2026-06-10

·

Updated

2026-09-04

CVSS v3.1

9.6

Critical

VectorAV:A/AC:L/PR:N/UI:N/S:C/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions assisted-migration-agent (affected versions not specified)
Description An unauthenticated attacker on the same local area network (LAN) can exploit a path traversal flaw. By using a specially crafted gzipped tarball, the attacker can bypass security checks to write arbitrary files to the system, which may lead to unauthorized code execution on the appliance. Path traversal is a technique used to access files and directories that are stored outside the web root folder.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Link Following

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-53476
GHSA-7J4W-X8X8-5MVG
GO-2026-6231
OPENSUSE-SU-2026:21761-1

Affected Products

Assisted-Migration-Agent