CVE-2026-35082

HIGH WAF: High
CVSS 8.8 Published: 2026-06-03
CWE-22

The ugw-logread method allows a remote attacker with user privileges to access arbitrary local files due to insufficient validation of user-supplied input.

WAF Coverage Analysis

Path Traversal High WAF Coverage

OWASP: A01:2021 Broken Access Control

930xxx - Local File Inclusion

Affected Software

VendorProductVersion
mbs-solutionsuniversal_gateway_firmwareup to 6_00_07

References

Back to CVE Database