Critical severity9.6NVD Advisory· Published Jun 10, 2026· Updated Jun 16, 2026
CVE-2026-53476
CVE-2026-53476
Description
A flaw was found in assisted-migration-agent. An unauthenticated attacker, located on the same local area network (LAN), can exploit a path traversal vulnerability. By crafting a specially designed gzipped tarball, the attacker can bypass security checks and write arbitrary files to the system. This could ultimately lead to the execution of unauthorized code on the appliance.
AI Insight
LLM-synthesized narrative grounded in this CVE's description and references.
Affected products
3(expand)+ 2 more
- (no CPE)
- cpe:2.3:a:kubev2v:assisted_migration_agent:*:*:*:*:*:*:*:*range: <2026-06-07
- (no CPE)
Patches
Vulnerability mechanics
References
3- github.com/kubev2v/assisted-migration-agent/pull/256nvdPatch
- access.redhat.com/security/cve/CVE-2026-53476nvdThird Party Advisory
- bugzilla.redhat.com/show_bug.cginvdIssue TrackingThird Party Advisory
News mentions
0No linked articles in our index yet.