<?xml version="1.0" encoding="utf-8" standalone="yes"?><rss version="2.0" xmlns:atom="http://www.w3.org/2005/Atom"><channel><title>Cwe-22 — PoC Archive</title><link>https://poc.intelseclab.com/tags/cwe-22/</link><description>Latest proof-of-concept entries.</description><generator>Hugo</generator><language>en-us</language><lastBuildDate>Fri, 31 Jul 2026 00:00:00 +0000</lastBuildDate><atom:link href="https://poc.intelseclab.com/tags/cwe-22/index.xml" rel="self" type="application/rss+xml"/><item><title>Microweber CMS Unauthenticated Path Traversal → Arbitrary File Read (CVE-2026-65694)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-31_cve-2026-65694-microweber-path-traversal/</link><pubDate>Fri, 31 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-31_cve-2026-65694-microweber-path-traversal/</guid><description>High severity (CVSS 7.5) — web · CVE-2026-65694 (VulnCheck advisory). Status: Unpatched. Affects: Microweber CMS — ServeStaticFileContoller::serveFromUserfiles(). Tags: microweber, path-traversal, cwe-22, unauthenticated, arbitrary-file-read, laravel, query-string-override.</description><category>web</category><category>High</category><category>microweber</category><category>path-traversal</category><category>cwe-22</category><category>unauthenticated</category><category>arbitrary-file-read</category><category>laravel</category><category>query-string-override</category></item><item><title>Rails Active Storage Arbitrary File Read to RCE via libvips Unfuzzed Loaders (CVE-2026-66066)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-27_cve-2026-66066-rails-activestorage-libvips-rce/</link><pubDate>Mon, 27 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-27_cve-2026-66066-rails-activestorage-libvips-rce/</guid><description>Critical severity (CVSS 9.5) — web · CVE-2026-66066 (GHSA-xr9x-r78c-5hrm). Status: Weaponized. Affects: Ruby on Rails — Active Storage (image variant processing via :vips/libvips). Tags: ruby-on-rails, active-storage, libvips, arbitrary-file-read, marshal-deserialization, rce, unauthenticated, cwe-22.</description><category>web</category><category>Critical</category><category>ruby-on-rails</category><category>active-storage</category><category>libvips</category><category>arbitrary-file-read</category><category>marshal-deserialization</category><category>rce</category><category>unauthenticated</category><category>cwe-22</category></item><item><title>Adobe ColdFusion RDS Path Traversal → Arbitrary File Read/Write → RCE (CVE-2026-48282)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-19_cve-2026-48282-coldfusion-rds-path-traversal-rce/</link><pubDate>Sun, 19 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-19_cve-2026-48282-coldfusion-rds-path-traversal-rce/</guid><description>Critical severity (CVSS 10) — web · CVE-2026-48282 (Adobe APSB26-68). Status: Weaponized — arbitrary file read/write, directory browsing, webshell deployment, and command execution all confirmed. Affects: Adobe ColdFusion — Remote Development Service (RDS), /CFIDE/main/ide.cfm. Tags: coldfusion, adobe, rds, path-traversal, cwe-22, unauthenticated, remote, webshell, kev, actively-exploited.</description><category>web</category><category>Critical</category><category>coldfusion</category><category>adobe</category><category>rds</category><category>path-traversal</category><category>cwe-22</category><category>unauthenticated</category><category>remote</category><category>webshell</category><category>kev</category><category>actively-exploited</category></item><item><title>Crawl4AI Docker API Server Arbitrary File Write via `output_path` (CVE-2026-56260)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-12_cve-2026-56260-crawl4ai-output-path-arbitrary-write/</link><pubDate>Sun, 12 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-12_cve-2026-56260-crawl4ai-output-path-arbitrary-write/</guid><description>Critical severity (CVSS 9.1) — web · CVE-2026-56260 (GHSA-365w-hqf6-vxfg). Status: PoC — lab (vulnerable-app/) demonstrates genuine unrestricted arbitrary file write; the bundled poc.py scanner is deliberately conservative (writes only to a randomized safe /tmp marker) so it is safe to run against real/production targets. See Notes.. Affects: Crawl4AI — open-source LLM-friendly web crawler/scraper (unclecode/crawl4ai), Docker API server mode. Tags: crawl4ai, ai-web-crawler, docker-api, path-traversal, arbitrary-file-write, cwe-22, unauthenticated, remote, denial-of-service.</description><category>web</category><category>Critical</category><category>crawl4ai</category><category>ai-web-crawler</category><category>docker-api</category><category>path-traversal</category><category>arbitrary-file-write</category><category>cwe-22</category><category>unauthenticated</category><category>remote</category><category>denial-of-service</category></item><item><title>ZKTeco BioTime v8.5.5 Unauthenticated Path Traversal / Arbitrary File Read via iclock API (CVE-2023-38950)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-11_cve-2023-38950-zkteco-biotime-path-traversal/</link><pubDate>Sat, 11 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-11_cve-2023-38950-zkteco-biotime-path-traversal/</guid><description>High severity (CVSS 7.5) — web · CVE-2023-38950. Status: Weaponized (public PoC, in CISA KEV). Affects: ZKTeco BioTime (web-based time &amp; attendance / access control management platform). Tags: zkteco, biotime, path-traversal, arbitrary-file-read, cwe-22, unauthenticated, remote, iclock-api, kev.</description><category>web</category><category>High</category><category>zkteco</category><category>biotime</category><category>path-traversal</category><category>arbitrary-file-read</category><category>cwe-22</category><category>unauthenticated</category><category>remote</category><category>iclock-api</category><category>kev</category></item><item><title>ThinkPHP 5.0.24 File Inclusion Leading to Remote Code Execution (CVE-2025-63888)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-63888-thinkphp-file-inclusion-rce/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-63888-thinkphp-file-inclusion-rce/</guid><description>Critical severity (CVSS 9.8) — web · CVE-2025-63888. Status: Weaponized. Affects: ThinkPHP (top10.org / TopThink PHP framework). Tags: thinkphp, php, file-inclusion, lfi, rce, log-poisoning, webshell, cwe-98, cwe-22.</description><category>web</category><category>Critical</category><category>thinkphp</category><category>php</category><category>file-inclusion</category><category>lfi</category><category>rce</category><category>log-poisoning</category><category>webshell</category><category>cwe-98</category><category>cwe-22</category></item><item><title>Samsung MagicINFO 9 Server Unauthenticated Path Traversal to RCE (CVE-2025-4632)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-4632-magicinfo-path-traversal-rce/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-4632-magicinfo-path-traversal-rce/</guid><description>Critical severity (CVSS 9.8) — web · CVE-2025-4632. Status: Weaponized. Affects: Samsung MagicINFO 9 Server (digital signage content management server), SWUpdateFileUploader servlet. Tags: samsung, magicinfo, path-traversal, arbitrary-file-upload, unauthenticated-rce, jsp-webshell, cwe-22, cwe-434, python.</description><category>web</category><category>Critical</category><category>samsung</category><category>magicinfo</category><category>path-traversal</category><category>arbitrary-file-upload</category><category>unauthenticated-rce</category><category>jsp-webshell</category><category>cwe-22</category><category>cwe-434</category><category>python</category></item><item><title>Python tarfile `filter="data"` Bypass via PATH_MAX/realpath Confusion (CVE-2025-4517)</title><link>https://poc.intelseclab.com/pocs/misc/2026-07-06_cve-2025-4517-tarfile-filter-data-path-max-bypass/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/misc/2026-07-06_cve-2025-4517-tarfile-filter-data-path-max-bypass/</guid><description>Critical severity (CVSS 9.4) — misc · CVE-2025-4517. Status: Weaponized. Affects: Python standard library tarfile module — filter="data" / filter="tar" extraction filters (PEP 706). Tags: python, tarfile, path-traversal, sandbox-bypass, path_max, realpath, symlink, cwe-22, stdlib.</description><category>misc</category><category>Critical</category><category>python</category><category>tarfile</category><category>path-traversal</category><category>sandbox-bypass</category><category>path_max</category><category>realpath</category><category>symlink</category><category>cwe-22</category><category>stdlib</category></item><item><title>Pterodactyl Panel Unauthenticated Path Traversal via locale.json Leaking Database Credentials (CVE-2025-49132)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-49132-pterodactyl-locale-path-traversal/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-06_cve-2025-49132-pterodactyl-locale-path-traversal/</guid><description>Critical severity (CVSS 10) — web · CVE-2025-49132. Status: Weaponized. Affects: Pterodactyl Panel (game server management panel). Tags: pterodactyl, path-traversal, unauthenticated, information-disclosure, credential-leak, database, php, config-exposure, cwe-22.</description><category>web</category><category>Critical</category><category>pterodactyl</category><category>path-traversal</category><category>unauthenticated</category><category>information-disclosure</category><category>credential-leak</category><category>database</category><category>php</category><category>config-exposure</category><category>cwe-22</category></item><item><title>Mitel MiCollab Path Normalization Bypass to Internal Endpoints (CVE-2025-52913)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-06_cve-2025-52913-mitel-micollab-path-traversal/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-06_cve-2025-52913-mitel-micollab-path-traversal/</guid><description>Critical severity (CVSS 9.8) — network · CVE-2025-52913. Status: PoC. Affects: Mitel MiCollab (unified communications appliance). Tags: mitel, micollab, path-traversal, path-normalization, access-control-bypass, authentication-bypass, cwe-22, axis2, python, unified-communications.</description><category>network</category><category>Critical</category><category>mitel</category><category>micollab</category><category>path-traversal</category><category>path-normalization</category><category>access-control-bypass</category><category>authentication-bypass</category><category>cwe-22</category><category>axis2</category><category>python</category><category>unified-communications</category></item><item><title>FortiWeb `cgi-bin/fwbcgi` Path Traversal Authentication Bypass Leading to Rogue Admin Creation (CVE-2025-64446)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-06_cve-2025-64446-fortiweb-cgiinfo-auth-bypass/</link><pubDate>Mon, 06 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-06_cve-2025-64446-fortiweb-cgiinfo-auth-bypass/</guid><description>Critical severity (CVSS 9.8) — network · CVE-2025-64446. Status: PoC. Affects: Fortinet FortiWeb (Web Application Firewall appliance). Tags: fortiweb, fortinet, waf, authentication-bypass, path-traversal, cgiinfo, cwe-22, cwe-288, admin-account-creation, python.</description><category>network</category><category>Critical</category><category>fortiweb</category><category>fortinet</category><category>waf</category><category>authentication-bypass</category><category>path-traversal</category><category>cgiinfo</category><category>cwe-22</category><category>cwe-288</category><category>admin-account-creation</category><category>python</category></item><item><title>Veno File Manager Path Traversal to Arbitrary File Read (CVE-2026-37066)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-37066-veno-file-manager-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-37066-veno-file-manager-path-traversal/</guid><description>High severity — web · CVE-2026-37066. Status: PoC. Affects: Veno File Manager Project. Tags: veno-file-manager, path-traversal, arbitrary-file-read, authenticated, superadmin, cwe-22.</description><category>web</category><category>High</category><category>veno-file-manager</category><category>path-traversal</category><category>arbitrary-file-read</category><category>authenticated</category><category>superadmin</category><category>cwe-22</category></item><item><title>Veno File Manager Arbitrary File Deletion (CVE-2026-37065)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-37065-veno-file-manager-file-deletion/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-37065-veno-file-manager-file-deletion/</guid><description>High severity — web · CVE-2026-37065. Status: PoC. Affects: Veno File Manager Project. Tags: veno-file-manager, arbitrary-file-deletion, authenticated, superadmin, cwe-22.</description><category>web</category><category>High</category><category>veno-file-manager</category><category>arbitrary-file-deletion</category><category>authenticated</category><category>superadmin</category><category>cwe-22</category></item><item><title>UnPoller Path Traversal / Arbitrary File Read via file:// Password Prefix (CVE-2026-36851)</title><link>https://poc.intelseclab.com/pocs/misc/2026-07-05_cve-2026-36851-unpoller-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/misc/2026-07-05_cve-2026-36851-unpoller-path-traversal/</guid><description>High severity (CVSS 7.5) — misc · CVE-2026-36851. Status: PoC. Affects: UnPoller (unpoller/unpoller). Tags: unpoller, path-traversal, arbitrary-file-read, unifi, cwe-22, cwe-20.</description><category>misc</category><category>High</category><category>unpoller</category><category>path-traversal</category><category>arbitrary-file-read</category><category>unifi</category><category>cwe-22</category><category>cwe-20</category></item><item><title>Tandoor Recipes Authenticated Local File Disclosure via Recipe Import (CVE-2026-25964)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-25964-tandoor-recipes-lfi/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-25964-tandoor-recipes-lfi/</guid><description>Medium severity (CVSS 4.9) — web · CVE-2026-25964 (GHSA-6485-jr28-52xx). Status: PoC. Affects: Tandoor Recipes (self-hosted recipe manager, Django-based). Tags: path-traversal, local-file-disclosure, tandoor-recipes, django, rest-api, authenticated, cwe-22, arbitrary-file-read.</description><category>web</category><category>Medium</category><category>path-traversal</category><category>local-file-disclosure</category><category>tandoor-recipes</category><category>django</category><category>rest-api</category><category>authenticated</category><category>cwe-22</category><category>arbitrary-file-read</category></item><item><title>OpenEMR EtherFax Module Authenticated Arbitrary File Read (CVE-2026-24849)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-24849-openemr-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-24849-openemr-path-traversal/</guid><description>Critical severity (CVSS 6.5) — web · CVE-2026-24849. Status: PoC. Affects: OpenEMR (Fax/SMS module, EtherFax provider). Tags: openemr, path-traversal, arbitrary-file-read, cwe-22, php, healthcare, phi-exposure, authenticated.</description><category>web</category><category>Critical</category><category>openemr</category><category>path-traversal</category><category>arbitrary-file-read</category><category>cwe-22</category><category>php</category><category>healthcare</category><category>phi-exposure</category><category>authenticated</category></item><item><title>Nezha Dashboard Path Traversal → JWT Secret Leak → Token Forgery — CVE-2026-53519</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-53519-nezha-path-traversal-jwt-forgery/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-53519-nezha-path-traversal-jwt-forgery/</guid><description>Info severity — web · CVE-2026-53519 (GHSA-5c25-7vpj-9mqh). Status: PoC. Affects: Nezha Dashboard (monitoring/agent management panel). Tags: nezha, path-traversal, jwt-forgery, unauthenticated, config-disclosure, sqlite, privilege-escalation, cwe-22, cwe-347.</description><category>web</category><category>Info</category><category>nezha</category><category>path-traversal</category><category>jwt-forgery</category><category>unauthenticated</category><category>config-disclosure</category><category>sqlite</category><category>privilege-escalation</category><category>cwe-22</category><category>cwe-347</category></item><item><title>mcp-atlassian Path Traversal via confluence_upload_attachment (CVE-2026-27825)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-27825-mcp-atlassian-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-27825-mcp-atlassian-path-traversal/</guid><description>Critical severity (CVSS 9.3) — web · CVE-2026-27825 (read-side twin of GHSA-xjgw-4wvw-rgm4). Status: PoC. Affects: sooperset/mcp-atlassian MCP server. Tags: mcp, path-traversal, arbitrary-file-read, confluence, mcp-atlassian, cwe-22, unauthenticated.</description><category>web</category><category>Critical</category><category>mcp</category><category>path-traversal</category><category>arbitrary-file-read</category><category>confluence</category><category>mcp-atlassian</category><category>cwe-22</category><category>unauthenticated</category></item><item><title>Langflow Knowledge Base Path Traversal / Arbitrary Directory Deletion (CVE-2026-42048)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-42048-langflow-kb-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-42048-langflow-kb-path-traversal/</guid><description>High severity — web · CVE-2026-42048 (GHSA-9whx-c884-c68q). Status: PoC. Affects: Langflow (Knowledge Bases bulk delete API). Tags: langflow, path-traversal, arbitrary-file-deletion, cwe-22, api, docker-lab, knowledge-base.</description><category>web</category><category>High</category><category>langflow</category><category>path-traversal</category><category>arbitrary-file-deletion</category><category>cwe-22</category><category>api</category><category>docker-lab</category><category>knowledge-base</category></item><item><title>Gravity Forms Path Traversal → Arbitrary File Deletion (CVE-2026-48866)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-48866-gravityforms-path-traversal-file-deletion/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-48866-gravityforms-path-traversal-file-deletion/</guid><description>Critical severity (CVSS 9.6) — web · CVE-2026-48866. Status: PoC. Affects: Gravity Forms plugin for WordPress. Tags: wordpress, gravity-forms, path-traversal, cwe-22, arbitrary-file-deletion, php, unauthenticated-injection.</description><category>web</category><category>Critical</category><category>wordpress</category><category>gravity-forms</category><category>path-traversal</category><category>cwe-22</category><category>arbitrary-file-deletion</category><category>php</category><category>unauthenticated-injection</category></item><item><title>FUXA SCADA/HMI — Unauthenticated Path Traversal to Remote Code Execution (CVE-2026-25895)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-25895-fuxa-path-traversal-rce/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-25895-fuxa-path-traversal-rce/</guid><description>Critical severity (CVSS 9.8) — web · CVE-2026-25895. Status: Weaponized. Affects: FUXA (Node.js-based SCADA/HMI platform), frangoteam. Tags: fuxa, scada, ics, path-traversal, arbitrary-file-write, rce, unauthenticated, cwe-22, cron-persistence, webshell.</description><category>web</category><category>Critical</category><category>fuxa</category><category>scada</category><category>ics</category><category>path-traversal</category><category>arbitrary-file-write</category><category>rce</category><category>unauthenticated</category><category>cwe-22</category><category>cron-persistence</category><category>webshell</category></item><item><title>Casdoor Authenticated Path Traversal to Arbitrary File Write (CVE-2026-6815)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-6815-casdoor-path-traversal-file-write/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-6815-casdoor-path-traversal-file-write/</guid><description>High severity — web · CVE-2026-6815. Status: Weaponized. Affects: Casdoor (open-source identity/access management platform). Tags: casdoor, path-traversal, arbitrary-file-write, rce, dos, authenticated, cwe-22.</description><category>web</category><category>High</category><category>casdoor</category><category>path-traversal</category><category>arbitrary-file-write</category><category>rce</category><category>dos</category><category>authenticated</category><category>cwe-22</category></item><item><title>AdonisJS bodyparser Path Traversal to Arbitrary File Write (CVE-2026-21440)</title><link>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-21440-adonisjs-bodyparser-path-traversal/</link><pubDate>Sun, 05 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/web/2026-07-05_cve-2026-21440-adonisjs-bodyparser-path-traversal/</guid><description>Critical severity (CVSS 9.2) — web · CVE-2026-21440 (GHSA-gvq6-hvvp-h34h). Status: Weaponized. Affects: @adonisjs/bodyparser (AdonisJS multipart file-upload handling). Tags: adonisjs, nodejs, path-traversal, arbitrary-file-write, cwe-22, file-upload, rce, bodyparser.</description><category>web</category><category>Critical</category><category>adonisjs</category><category>nodejs</category><category>path-traversal</category><category>arbitrary-file-write</category><category>cwe-22</category><category>file-upload</category><category>rce</category><category>bodyparser</category></item><item><title>Cisco Catalyst SD-WAN Manager Arbitrary File Write (CVE-2026-20262)</title><link>https://poc.intelseclab.com/pocs/network/2026-07-01_cve-2026-20262-cisco-sdwan-manager-file-write/</link><pubDate>Wed, 01 Jul 2026 00:00:00 +0000</pubDate><guid>https://poc.intelseclab.com/pocs/network/2026-07-01_cve-2026-20262-cisco-sdwan-manager-file-write/</guid><description>Medium severity (CVSS 6.5) — network · CVE-2026-20262. Status: PoC. Affects: Cisco Catalyst SD-WAN Manager (formerly SD-WAN vManage). Tags: path-traversal, file-write, Cisco, SD-WAN, vManage, authenticated, CWE-22, active-exploitation.</description><category>network</category><category>Medium</category><category>path-traversal</category><category>file-write</category><category>Cisco</category><category>SD-WAN</category><category>vManage</category><category>authenticated</category><category>CWE-22</category><category>active-exploitation</category></item></channel></rss>