Vulnerability Description
Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Path Traversal'). If exploited, arbitrary code may be executed by a remote unauthenticated attacker with the Windows system privilege where the product is running.
CVSS Score
HIGH
Related Weaknesses (CWE)
References
- https://jvn.jp/en/jp/JVN82536398/
- https://mfp-support.sios.jp/hc/ja/articles/45853460006937
- https://siosapps.sios.jp/agent_info/20250425001.html
FAQ
What is CVE-2025-26692?
CVE-2025-26692 is a vulnerability with a CVSS score of 8.1 (HIGH). Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory ('Path Traversal'). If exploited, arbitrary code may be executed by a remote unauthe...
How severe is CVE-2025-26692?
CVE-2025-26692 has been rated HIGH with a CVSS base score of 8.1/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-2025-26692?
Check the references section above for vendor advisories and patch information. Review vendor security bulletins for remediation guidance.