archive creation functionality. Because the archive path is
user-controlled and insufficiently validated, an attacker can manipulate
the input to traverse directories. This allows the creation of folders
in arbitrary locations, including sensitive directories such as
C:\Windows or for different users. This issue affects TeamDavid through Rollout 524.
Metrics
Affected Vendors & Products
No advisories yet.
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
Mon, 10 Aug 2026 12:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sat, 08 Aug 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Tobit Laboratories Ag
Tobit Laboratories Ag teamdavid |
|
| Vendors & Products |
Tobit Laboratories Ag
Tobit Laboratories Ag teamdavid |
Fri, 07 Aug 2026 10:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Tobit Laboratories AG TeamDavid's Webbox is vulnerable to a path traversal vulnerability in the archive creation functionality. Because the archive path is user-controlled and insufficiently validated, an attacker can manipulate the input to traverse directories. This allows the creation of folders in arbitrary locations, including sensitive directories such as C:\Windows or for different users. This issue affects TeamDavid through Rollout 524. | |
| Title | TeamDavid: Path Traversal in the archive creation functionality | |
| Weaknesses | CWE-36 | |
| References |
| |
| Metrics |
cvssV4_0
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: NCSC.ch
Published:
Updated: 2026-08-10T11:40:06.584Z
Reserved: 2026-06-12T09:32:44.531Z
Link: CVE-2026-54202
Updated: 2026-08-10T11:40:02.657Z
Status : Received
Published: 2026-08-07T10:16:56.927
Modified: 2026-08-10T12:17:16.593
Link: CVE-2026-54202
No data.
OpenCVE Enrichment
Updated: 2026-08-08T20:41:20Z