Home

Description

A path Traversal vulnerability exists in Ziostation2 v2.9.8.7 and earlier. A remote unauthenticated attacker may get sensitive information on the operating system.

PUBLISHED Reserved 2026-04-13 | Published 2026-04-23 | Updated 2026-04-23 | Assigner jpcert




HIGH: 7.5CVSS:3.0/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N

HIGH: 8.7CVSS:4.0/AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:N/SI:N/SA:N

Problem types

Improper limitation of a pathname to a restricted directory ('Path Traversal')

Product status

v2.9.8.7 and earlier
affected

References

jvn.jp/en/jp/JVN00575116/

cve.org (CVE-2026-40062)

nvd.nist.gov (CVE-2026-40062)

Download JSON