CVE-2026-69095 Details
Description
OpenWrt luci-app-bmx7 before commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd contains a path traversal vulnerability in the bmx7-info CGI script that allows unauthenticated attackers to read files outside the configured runtimeDir. Attackers can supply directory traversal sequences in the query string to escape the intended directory and read sensitive files accessible to the CGI process.
A path traversal vulnerability has been identified in the OpenWrt luci-app-bmx7 package, affecting versions prior to commit 5890760a454dad2cb00389dba2cdc5e779e0ffdd. The vulnerability resides in the bmx7-info CGI script, where unauthenticated attackers can exploit directory traversal sequences in the query string to read files outside the designated runtime directory. This issue allows access to sensitive files that the CGI process can read.
Users can update to luci-app-bmx7 version 5890760a454dad2cb00389dba2cdc5e779e0ffdd or later to address this vulnerability.
Metrics
CVSS 4.0 Severity and Vector Strings:
CVSS 3.x Severity and Vector Strings:
No data available for CVSS Version 2.0 on this CVE.
Volerion
Assessed Aug 3, 2026CISA-ADP
Assessed Aug 3, 2026References to Advisories, Solutions, and Tools
By selecting these links, you will be leaving this site. These are references gathered from the official CVE record and are not endorsed by Volerion.
| URL | Source(s) | Tag(s) |
|---|---|---|
| https://github.com/openwrt/luci/security/advisories/GHSA-8qcq-jgrj-gvmj | CISA-ADP | AdvisoryExploitRemedyVendor |
| https://github.com/openwrt/luci/security/advisories/GHSA-8qcq-jgrj-gvmj | [email protected] | AdvisoryExploitRemedyVendor |
| https://www.vulncheck.com/advisories/openwrt-luci-app-bmx7-path-traversal-via-bmx7-info | [email protected] | AdvisoryVendor |
Weakness Enumeration
| CWE-ID | CWE Name | Source |
|---|---|---|
| CWE-22 | Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') | [email protected] |
Affected Products
| Product | Versions |
|---|---|
| OpenWrt luci-app-bmx7 | < 5890760a454dad2cb00389dba2cdc5e779e0ffdd |
CPE
Remediation
| |
Change History
2 change records found show changes
| Date | Action | Recorded By |
|---|---|---|
| Aug 3, 2026 | CVE Modified | CISA-ADP |
| Aug 3, 2026 | New CVE Received | [email protected] |
Volerion