CVE-2026-48753RCE por salto de directorio en el endpoint S3 de Incus
Incus is a system container and virtual machine manager. Prior to version 7.1.0, the S3 protocol upload endpoint is vulnerable to path traversal and allows creation of arbitrary files on the host. This behavior could lead to arbitrary command execution. Version 7.1.0 fixes the issue.
Ver en NVDAnálisis
Incus versions prior to 7.1.0 contain a critical vulnerability in the S3 protocol upload endpoint. Attackers can leverage path traversal to create arbitrary files on the host system, which can result in full remote code execution (RCE). Users should upgrade to 7.1.0 immediately.
Roles relevantes
Severidad
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:C/C:H/I:H/A:HCWE-73EPSS
Sin puntaje EPSS aún (CVE muy reciente).
Descripción técnica
Incus is a system container and virtual machine manager. Prior to version 7.1.0, the S3 protocol upload endpoint is vulnerable to path traversal and allows creation of arbitrary files on the host. This behavior could lead to arbitrary command execution. Version 7.1.0 fixes the issue.