Analysis and contextual insights are available on OpenCVE Cloud.
No vendor fix or workaround currently provided.
Additional remediation guidance may be available on OpenCVE Cloud.
Tracking
Sign in to view the affected projects.
No advisories yet.
Tue, 17 Mar 2026 14:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Tue, 17 Mar 2026 10:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Zwickroell
Zwickroell test Data Management |
|
| Vendors & Products |
Zwickroell
Zwickroell test Data Management |
Mon, 16 Mar 2026 21:00:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | ZwickRoell Test Data Management versions prior to 3.0.8 contain a local file inclusion (LFI) vulnerability in the /server/node_upgrade_srv.js endpoint. An unauthenticated attacker can supply directory traversal sequences via the firmware parameter to access arbitrary files on the server, leading to information disclosure of sensitive system files. | |
| Title | ZwickRoell Test Data Management < 3.0.8 Path Traversal LFI | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV4_0
|
Status: PUBLISHED
Assigner: VulnCheck
Published:
Updated: 2026-03-17T13:36:22.871Z
Reserved: 2026-03-04T15:39:26.873Z
Link: CVE-2026-29522
Updated: 2026-03-17T13:36:19.790Z
Status : Deferred
Published: 2026-03-16T21:16:33.717
Modified: 2026-05-01T15:23:27.150
Link: CVE-2026-29522
No data.
OpenCVE Enrichment
Updated: 2026-03-24T10:49:46Z