CVSS
8.5
CVSS v4.0
EPSS
0.3%
Exploit Prediction Score
Published
August 7, 2026
Exploitability
EPSS probability 0.3%
Tobit Laboratories AG TeamDavid's Webbox is vulnerable to a path traversal vulnerability in the archive creation functionality. Because the archive path is user-controlled and insufficiently validated, an attacker can manipulate the input to traverse directories. This allows the creation of folders in arbitrary locations, including sensitive directories such as C:\Windows or for different users. This issue affects TeamDavid through Rollout 524.
No package data available.
Publisher and database URLs for this record (shown for attribution; reading stays in Bugflare).