CVE-2025-26692 Information

Description

Quick Agent V3 and Quick Agent V2 contain an issue with improper limitation of a pathname to a restricted directory (‘Path Traversal’). If exploited arbitrary code may be executed by a remote unauthenticated attacker with the Windows system privilege where the product is running.

Reference

https://jvn.jp/en/jp/JVN82536398/ https://mfp-support.sios.jp/hc/ja/articles/45853460006937 https://siosapps.sios.jp/agent_info/20250425001.html

Share on: