CVE-2025-70819
Zettlab D6 Ultra before 1.7.0 allows mounting /etc/passwd and /etc/shadow in a container via ".." manipulations such as volumes: - ../../../../../../../etc:/h_etc:rw in a compose file.
Scoring
- Severity
- MEDIUM
- CVSS base score
- 6.3
- CVSS vector
- CVSS:3.1/AV:L/AC:H/PR:L/UI:N/S:U/C:H/I:H/A:N
- EPSS probability
- 0.11%
- CWE
- CWE-24
- Published
- 2026-09-13
- Last modified
- 2026-09-14
Affected products
- Zettlab D6 Ultra
Weakness type
Related vulnerabilities
- CVE-2025-27920 — Output Messenger before 2.0.63 was vulnerable to a directory traversal attack through improper file path handling. By us
- CVE-2024-6746 — NaiboWang EasySpider HTTP GET Request server.js path traversal
- CVE-2023-52076 — Remote Code Execution Vulnerability in Atril's EPUB ebook parsing
- CVE-2026-39813 — A path traversal: '../filedir' vulnerability in Fortinet FortiSandbox 5.0.0 through 5.0.5, FortiSandbox 4.4.0 through 4.
- CVE-2025-53513 — Zip slip vulnerability in Juju
- CVE-2024-23657 — Path Traversal: '../filedir' in Nuxt Devtools
- CVE-2021-26725 — Authenticated command path traversal on timezone settings in Guardian/CMC before 20.0.7.4
- CVE-2025-60344 — A path traversal (directory traversal) vulnerability in D-Link DSR series routers allows unauthenticated remote attacker