CVE-2026-35077
Arbitrary file delete vulnerability in method ugw-delete-file
In short
A feature that deletes files doesn't properly check what files users are allowed to delete, letting attackers with regular user access remove important system files they shouldn't touch.
Technical detail
The ugw-delete-file method fails to validate or restrict file paths provided by authenticated users, allowing path traversal attacks to delete arbitrary files on the system. An attacker with valid user credentials can exploit insufficient input validation to access and remove files outside intended directories.
Summary generated and translated by AI from the official description.
The ugw-delete-file method allows a remote attacker with user privileges to delete arbitrary local files due to insufficient validation of user-controlled input.
CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:N/VI:H/VA:H/SC:N/SI:N/SA:N
Affected products
MBS · Double-A ProfibusMBS · Double-A x-linkMBS · Double-X CANMBS · Double-X DALIMBS · Double-X KNXMBS · Double-X LONMBS · Double-X M-BusMBS · Double-X PROFINETMBS · Double-X x-linkMBS · Single-AMBS · Single-XMBS · Triple-X KNX+DALIMBS · Triple-X KNX+LONMBS · Triple-X KNX+M-BusMBS · Triple-X PROFINET+DALIMBS · Triple-X PROFINET+KNXMBS · Triple-X PROFINET+LONMBS · Triple-X PROFINET+M-BusWant to know if your infrastructure is exposed to this?
Talk to TrueHacking →