CVE-2026-65689

standalone_report_designer: Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') (CVE-2026-65689)

criticalEPSS 0.9 %

Beschreibung

Der Standalone Report Designer von Bold Reports vor Version 14.1.12 enthält eine Schwachstelle aufgrund fehlender Pfadüberprüfung im Download-Feature der Datenbank, die es unauthentifizierten Angreifern ermöglicht, beliebige Dateien vom Serverdateisystem durch das Einsenden einer manipulierten Anfrage einzusehen. Angreifer können diese Schwachstelle für Pfadtraversierung ausnutzen, um sensible Serverdateien offenzulegen, einschließlich Authentifizierungsdaten, was unbefugten vollen Zugriff auf die Anwendung ermöglicht. Die Schwachstelle betrifft speziell das DataHub-Modul, das in Bold Reports 6.3 eingeführt wurde. Daher sind Versionen vor 6.3 nicht betroffen.

Metriken

Severity
critical
kein öffentlicher PoC bekannt
9.8
Quelle: nvd-v3
56.5 %
Hoch — CVE rangiert über dem Median aller heute bewerteten CVEs (Rang ≥ 36 %).
0.9 %
Niedrig — Modell schätzt < 1 % Ausnutzungs-Wahrscheinlichkeit.
Veröffentlicht
2026-07-23 14:18 UTC
CWE-22

Weakness-Klassen (CWE)

  • CWE-22Base

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')

    The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

    cwe.mitre.org →

Re-Analyse & Statuswechsel

Chronologie der NVD-Audit-Events für diese CVE — Reanalyses, CVSS-Updates, CPE-Diffs.

  1. CVE Modified2026-07-27 17:16 UTC· 134c704f-9b21-4f2e-91b3-4a467353bcc0
    • SSVC: {"id":"CVE-2026-65689","role":"CISA Coordinator","options":[{"exploitation":"none"},{"automatable":"yes"},{"technical…
  2. CVE Modified2026-07-24 22:16 UTC· disclosure@vulncheck.com
    • Affected: Standalone Report DesignerStandalone Report Designer
  3. CVE Modified2026-07-24 15:19 UTC· disclosure@vulncheck.com
    • Affected: Standalone Report DesignerStandalone Report Designer
    • Description: Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application.Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application. The vulnerability is specific to the DataHub module, which was introduced in Bold Reports 6.3. Therefore, versions prior to 6.3 are not affected.
  4. New CVE Received2026-07-23 14:18 UTC· disclosure@vulncheck.com
    • Affected: Standalone Report Designer
    • Description: Bold Reports Standalone Report Designer before 14.1.12 contains a missing filepath validation vulnerability in its database download feature that allows unauthenticated attackers to read arbitrary files from the server filesystem by supplying a crafted request. Attackers can exploit this path traversal weakness to disclose sensitive server files, including authentication credentials, enabling full unauthorized access to the application.
    • CVSS V4.0: AV:N/AC:L/AT:N/PR:N/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X
    • CVSS V3.1: AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:H

Betroffene Produkte

Aus der Hersteller-/CERT-Meldung extrahierte Produkte und Versionsbereiche. Ein Version-Range wie „<4.14.6“ impliziert die Update-Empfehlung „auf 4.14.6 oder höher aktualisieren“.

  • syncfusion

    standalone_report_designer6.3 – 14.1.12

Quellen & Referenzen

Verknüpfte Empfehlungen

IDCVE-2026-65689