Path Traversal Vulnerability in AKINSOFT Wolvox9 ERP Software
CVE-2026-15585

7.5HIGH

What is CVE-2026-15585?

A path traversal vulnerability exists in the AKINSOFT Wolvox9 ERP, specifically within the KontrolPanel.exe component. This flaw permits unauthorized access to files outside the intended restricted directory, thus potentially exposing sensitive data. The issue affects versions from s26.02.17 up to 26.02.22. This vulnerability highlights the importance of securing software against improper input validation and ensuring robust directory access controls to safeguard user data.

Affected Version(s)

AKINSOFT Wolvox9 ERP / KontrolPanel.exe s26.02.17 < 26.02.22

References

CVSS V3.1

Score:
7.5
Severity:
HIGH
Confidentiality:
High
Integrity:
None
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

Eren Can Ă–ZMEN
.