High severity7.5NVD Advisory· Published Sep 16, 2026
CVE-2026-27557
CVE-2026-27557
Description
An unauthenticated remote attacker can exploit a path traversal vulnerability in the /index.php/view_uploaded_iodd_file endpoint allowing the SSH server's private keys to be read.
Affected products
1Patches
Vulnerability mechanics
References
3News mentions
0No linked articles in our index yet.