Unauthorized Access Vulnerability in CGI Endpoints of MyApp by MyCompany
CVE-2026-22905
7.5HIGH
What is CVE-2026-22905?
An unauthenticated remote attacker can exploit this vulnerability by bypassing authentication through inadequate URI validation. By leveraging path traversal sequences, such as /js/../cgi-bin/post.cgi, attackers gain unauthorized access to sensitive CGI endpoints and potentially download configuration files, thereby compromising the security of MyApp.
Affected Version(s)
0852-1322 0.0.0 <= 2.64
0852-1322 2.64
0852-1328 0.0.0 <= 2.64
