#VU107934 Path traversal in Quick Agent - CVE-2025-26692
Published: April 25, 2025
Quick Agent
SIOS Technology
Description
The vulnerability allows a remote attacker to perform directory traversal attacks.
The vulnerability exists due to input validation error when processing directory traversal sequences in the file upload function. A remote attacker can send a specially crafted HTTP request and read arbitrary files on the system, leading to arbitrary code execution.