What is CVE-2026-47669?
CVE-2026-47669 is a path traversal vulnerability in DbGate's `unzipDirectory()` function. It affects versions 7.1.8 and prior, allowing attackers to write arbitrary files via malicious ZIP with `../` entries. Immediate update to the latest version is recommended.
Azərbaycanca: CVE-2026-47669 DbGate verilənlər bazası menecerində `unzipDirectory()` funksiyasında path traversal zəifliyidir. 7.1.8 və əvvəlki versiyaları təsirləyir, təcavüzkar xüsusi hazırlanmış ZIP faylı ilə ixtiyari faylları sistemə yaza bilər. Dərhal son versiyaya yeniləmə tövsiyə olunur.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
Which versions of DbGate are affected by CVE-2026-47669?
CVE-2026-47669 affects DbGate versions 7.1.8 and prior.
How can CVE-2026-47669 be exploited?
An attacker can exploit the path traversal vulnerability in DbGate's `unzipDirectory()` function to write arbitrary files to the system via a specially crafted ZIP file containing `../` entries.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.