CVE-2026-9153
בינונית 6.5
תיאור (מקור, אנגלית)
Arbitrary File Read vulnerability in Rapid7 InsightConnect Sed Plugin on Linux allows authenticated attackers to read arbitrary files via the expression parameter due to insufficient input validation.
מדדים
- CVSS 3.1
-
6.5 (MEDIUM)
מקור הציון: CNA
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:N/A:N - EPSS — סבירות ניצול
- 0% (אחוזון 000) נכון ל-14/8/2026
- CWE
- CWE-22, CWE-200
מוצרים מושפעים
gnu: sed; linux: linux kernel
קישורים
- https://extensions.rapid7.com/extension/sed Vendor Advisory