What is CVE-2026-67200?
A path traversal vulnerability in Perspective 5.0.0 allows unauthenticated remote attackers to read arbitrary files from the server filesystem by including literal "../" segments in HTTP request URL paths, bypassing insufficient query-string sanitization. This can lead to sensitive data leakage. Users of Perspective 5.0.0 should immediately apply the vendor-supplied patch and consider network-level access restrictions.
Azərbaycanca: Perspective 5.0.0-da autentifikasiya tələb etmədən, uzaqdan HTTP sorğu yollarında "../" ifadələri ilə server fayl sistemindən ixtiyari faylları oxumağa imkan verən path traversal zəifliyi aşkarlanıb. Zərərçəkənlər kifayət qədər müdafiə olunmayan sorğu simləri təmizləməsini keçərək məlumat sızması həyata keçirə bilər. Perspective 5.0.0 istifadəçiləri dərhal istehsalçı tərəfindən təqdim edilən yamağı tətbiq etməli və şəbəkə səviyyəsində məhdudiyyətləri nəzərdən keçirməlidir.
Related CVEs
link basis: same weakness class CWE-22
FAQ2
What does the CVE-2026-67200 path traversal vulnerability in Perspective 5.0.0 allow an unauthenticated attacker to do?
This vulnerability allows unauthenticated remote attackers to read arbitrary files from the server filesystem by including literal '../' segments in HTTP request URL paths.
What should Perspective 5.0.0 users do to protect against CVE-2026-67200?
Users should immediately apply the vendor-supplied patch and consider network-level access restrictions.
See also6
This explainer is AI-written from source data — skopnix's own reporting on this CVE; CVSS scores, vendors and versions are never invented. See NVD for the official record.