PT-2026-52125 · Aten · Unizon

Published

2026-06-24

·

Updated

2026-06-24

·

CVE-2026-9778

CVSS v3.1

7.2

High

VectorAV:N/AC:L/PR:H/UI:N/S:U/C:H/I:H/A:H
Name of the Vulnerable Software and Affected Versions ATEN Unizon (affected versions not specified)
Description An issue in the ImportDeviceList() method allows authenticated remote attackers to execute arbitrary code in the context of SYSTEM. This occurs due to insufficient validation of a user-supplied path before it is used in file operations, leading to directory traversal.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2026-9778
ZDI-26-382

Affected Products

Unizon