Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Mint Workbench I.

This issue affects Mint Workbench I: through 5876.
Published: 2026-09-23
Score: 8.2 High
EPSS: n/a
KEV: No
Impact: Unauthorized access to files outside the intended directory via path traversal.
Action: Apply patch
AI Analysis

Impact

The vulnerability stems from improper limitation of a pathname to a restricted directory, allowing an attacker to construct a path that escapes the intended boundary and accesses arbitrary files. This can lead to exposure of sensitive configuration files, credentials, or other critical data, potentially compromising confidentiality and integrity of the system.

Affected Systems

The affected product is ABB Mint Workbench I. The vulnerability exists in all releases through version 5876.

Risk and Exploitability

The CVSS score of 8.2 indicates high severity. No EPSS value is available at this time, and the vulnerability is not listed in the CISA KEV catalog. Based on the description, it is inferred that the attack vector likely involves components that accept user-supplied file paths, such as web or API interfaces, and the vulnerability can be exploited if an attacker has sufficient privilege to submit a crafted path. The risks involve read or write access to files outside the permitted directory, potentially leading to data breach or system compromise.

Generated by OpenCVE AI on September 23, 2026 at 12:20 UTC.

Remediation

No vendor fix or workaround currently provided.

OpenCVE Recommended Actions

  • Apply the latest patch released by ABB for Mint Workbench I.
  • Upgrade to a version newer than 5876, which includes the fix.
  • Limit the permissions of users executing the Mint Workbench I application and enforce strict access controls on the filesystem.

Generated by OpenCVE AI on September 23, 2026 at 12:20 UTC.

Tracking

Sign in to view the affected projects.

Advisories

No advisories yet.

History

Wed, 23 Sep 2026 05:30:00 +0000

Type Values Removed Values Added
Description Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Mint Workbench I. This issue affects Mint Workbench I: through 5876.
Title Mint Workbench I Path traversal Vulnerability
Weaknesses CWE-22
References
Metrics cvssV3_1

{'score': 7.5, 'vector': 'CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:N/A:N'}

cvssV4_0

{'score': 8.2, 'vector': 'CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:N/VC:H/VI:N/VA:N/SC:H/SI:N/SA:N'}


Subscriptions

No data.

cve-icon MITRE

Status: PUBLISHED

Assigner: ABB

Published:

Updated: 2026-09-23T05:05:16.249Z

Reserved: 2026-08-10T12:59:29.728Z

Link: CVE-2026-19438

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Received

Published: 2026-09-23T06:17:01.310

Modified: 2026-09-23T06:17:01.310

Link: CVE-2026-19438

cve-icon Redhat

No data.

cve-icon OpenCVE Enrichment

Updated: 2026-09-23T12:30:04Z

Weaknesses
  • CWE-22

    Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')