logo

Squiz CMS Path Traversal Vulnerability

ID: 0bf973e4-9cd1-5c05-9895-4ced8c6e58e3

STIX ID: report--0bf973e4-9cd1-5c05-9895-4ced8c6e58e3

Feed Name: NCC Research

Threat Score
70/100

Date Published: 2026-05-15

Date Updated: 2026-08-01

...
...

Squiz CMS v1.16.54 is vulnerable to authenticated file path traversal allowing attackers to read arbitrary system files (PoC demonstrates /etc/passwd disclosure). The advisory includes technical request examples, timeline information, and notes the vendor released a fix in version 1.18.46.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.