CVE-2026-11423 Details
Description
A path traversal vulnerability exists in the Altium Enterprise Server Collaboration Service due to improper handling of user-supplied filenames in the MCAD and Simulation file download flows. A regular authenticated user can submit a collaboration message containing a crafted filename, which is later used to construct the download path on the server without validation, allowing arbitrary files to be read from the server filesystem. Because the readable files include the server's master configuration, which stores credentials for privileged accounts, exploitation can lead to authenticating as a system administrator and gaining full control of the server. Altium 365 cloud deployments are not affected.
A path traversal vulnerability has been identified in the Altium Enterprise Server Collaboration Service. This issue arises from improper handling of user-supplied filenames during the MCAD and Simulation file download processes. An authenticated user can send a collaboration message with a crafted filename, which is then used to build the download path on the server without proper validation. This flaw enables the reading of arbitrary files from the server's filesystem. Exploitation of this vulnerability is particularly concerning as it allows access to the server's master configuration file, which contains credentials for privileged accounts. Consequently, an attacker could authenticate as a system administrator and gain full control of the server. It is important to note that Altium 365 cloud deployments are not affected by this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No CVSS 3.x data is available for this CVE.
No data available for CVSS Version 2.0 on this CVE.
CISA-ADP
Assessed Jun 8, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://www.altium.com/platform/security-compliance/security-advisories | Altium |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | Altium |
| CWE-269 | Improper Privilege Management | Altium |
Affected Products
No affected product data is available for this CVE.
Change History
4 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Jul 23, 2026 | CVE Translated | [email protected] |
| Jun 17, 2026 | CVE Modified | Altium |
| Jun 17, 2026 | CVE Modified | CISA-ADP |
| Jun 5, 2026 | New CVE Received | Altium |