Remote File Access Vulnerability in UGW-Logread Method by Vendor
CVE-2026-35082
8.7HIGH
What is CVE-2026-35082?
The UGW-Logread method contains a flaw that permits an authenticated remote attacker to exploit insufficient validation of input, leading to unauthorized access to arbitrary local files. This vulnerability highlights the importance of rigorous input validation to safeguard sensitive data and maintain system integrity.
Affected Version(s)
Double-A Profibus V1_0_0_0
Double-A x-link V1_0_0_0
Double-X CAN V1_0_0_0
References
CVSS V4
Score:
8.7
Severity:
HIGH
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Attack Required:
None
Privileges Required:
Undefined
User Interaction:
None
Timeline
Vulnerability published
Vulnerability Reserved
Credit
Adrien Rey from Cyber Defense Campus Zurich
Daniel Hulliger from Armasuisse
