Description
Zettlab D6 Ultra before 1.7.0 allows absolute path traversal to reach folders other than the personal folder.
Published: 2026-09-13
Score: 3.5 Low
EPSS: < 1% Very Low
KEV: No
Impact: Information Disclosure
Action: Upgrade Now
AI Analysis

Impact

Zettlab D6 Ultra before version 1.7.0 contains an absolute path traversal flaw that permits an attacker to reach directories outside the user’s personal folder. The flaw allows the exploitation of the device’s path handling logic, enabling unauthorized disclosure of sensitive content stored in shared or system directories, potentially compromising confidentiality. This weakness is classified as CWE‑36.

Affected Systems

The vulnerable product is Zettlab D6 Ultra, any build prior to the 1.7.0 release. No other vendors or product versions are affected according to the CNA data.

Risk and Exploitability

The CVSS base score is 3.5, indicating low severity overall. The EPSS score is less than 1%, indicating a very is not listed in CISA’s KEV catalog. Exploitation requires the ability to supply or influence path strings to the device’s file handling module. The attack vector is not explicitly documented, but it is inferred that an attacker with local or network-level access could craft malicious requests to trigger the traversal. As a result, the exploitability risk remains modest, yet the potential for accidental information disclosure warrants prompt attention.

Generated by OpenCVE AI on September 15, 2026 at 17:40 UTC.

Remediation

No solution or workaround provided in the CVE record.

OpenCVE Recommended Actions

  • Upgrade the Zettlab D6 Ultra firmware to version 1.7.0 or newer.
  • Restrict or disable SSH access on the device to limit exposure to authorized administrators only.
  • Monitor device logs for unauthorized path traversal attempts and verify that file access remains confined to personal folders.

Generated by OpenCVE AI on September 15, 2026 at 17:40 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Thu, 17 Sep 2026 20:30:00 +0000

Type Values Removed Values Added
First Time appeared Zettlab
Zettlab d6 Ultra
Vendors & Products Zettlab
Zettlab d6 Ultra

Tue, 15 Sep 2026 18:30:00 +0000

Type Values Removed Values Added
Metrics ssvc

{'options': {'Automatable': 'no', 'Exploitation': 'none', 'Technical Impact': 'partial'}, 'version': '2.0.3'}


Tue, 15 Sep 2026 18:00:00 +0000

Type Values Removed Values Added
Title Absolute Path Traversal in Zettlab D6 Ultra Enables Unauthorized Access to Non-Personal Directories

Mon, 14 Sep 2026 21:00:00 +0000

Type Values Removed Values Added
Title Absolute Path Traversal in Zettlab D6 Ultra Grants Unauthorized Folder Access

Mon, 14 Sep 2026 02:00:00 +0000

Type Values Removed Values Added
Title Absolute Path Traversal in Zettlab D6 Ultra Grants Unauthorized Folder Access

Sun, 13 Sep 2026 19:30:00 +0000

Type Values Removed Values Added
Description Zettlab D6 Ultra before 1.7.0 allows absolute path traversal to reach folders other than the personal folder.
Weaknesses CWE-36
References
Metrics cvssV3_1

{'score': 3.5, 'vector': 'CVSS:3.1/AV:A/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N'}


Subscriptions

Zettlab D6 Ultra
cve-icon MITRE

Status: PUBLISHED

Assigner: mitre

Published:

Updated: 2026-09-15T17:12:30.946Z

Reserved: 2026-01-09T00:00:00.000Z

Link: CVE-2025-70820

cve-icon Vulnrichment

Updated: 2026-09-15T17:12:14.206Z

cve-icon NVD

Status : Deferred

Published: 2026-09-13T20:16:50.727

Modified: 2026-09-22T20:00:03.713

Link: CVE-2025-70820

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-17T19:47:42Z

Weaknesses
  • CWE-36

    Absolute Path Traversal