OFFLINE
Awaiting data
Security intelligence
MinorCritical vulnerability

CVE-2026-102257 (CVSS 7.2)

NVD · officialPublished Oct 7, 2026Risk 23/100

A Zip Slip vulnerability in the in the SMA1000 Appliance Management Console (AMC) interface allows an attacker to extract files outside the intended destination directory using a specially crafted archive, resulting in remote code execution.

CVSS
7.2
AV:NetworkAC:LowPR:HighUI:NoneC:HighI:HighA:High

This record is attributed to NVD. Exploitation status and remediation guidance are kept separate from the vulnerability's technical severity.

Open primary source