VULN REPORT
/
web apps
/
ID: 503
CVE-2026-15687 - Path traversal via non-tar copyDirectoryFromPod
3.0
CVSS Severity Index
Low Severity / Düşük Seviye
Summary
This entry details a vulnerability found in the target system. The exploit was published on 2026-07-29 and has garnered 10 views from the community. It is classified under the web apps category. Users are advised to review the source code in the Detail tab for technical specifics.
exploit_503.txt
<div class="space-y-6 font-sans select-text text-left"><div class="bg-[#1C1C1E] border border-white/5 rounded-lg p-5"><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="info" class="w-3.5 h-3.5 text-[#26A269]"></i>Zafiyet Ozet Bilgileri</h3><div class="grid grid-cols-1 md:grid-cols-2 gap-4 text-sm"><div class="flex items-center gap-2"><span class="text-white/40">Zafiyet Kodu:</span><strong class="text-[#FF5F56] font-mono">CVE-2026-15687</strong></div><div class="flex items-center gap-2"><span class="text-white/40">Siddet Derecesi:</span><span class="font-bold font-mono" style="color:#26A269">LOW</span></div><div class="flex items-center gap-2"><span class="text-white/40">CVSS Skoru:</span><span class="text-[#FFB800] font-bold font-mono">3</span></div><div class="flex items-center gap-2"><span class="text-white/40">Etkilenen Surumler:</span><span class="text-white/80 font-mono text-xs">Products</span></div><div class="flex items-center gap-2"><span class="text-white/40">Yayinlanma Tarihi:</span><span class="text-white/80 font-mono">29.07.2026</span></div></div></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="file-text" class="w-3.5 h-3.5 text-[#26A269]"></i>Zafiyet Detayı (Turkce)</h3><p class="text-white/70 leading-relaxed text-sm bg-[#1C1C1E]/30 p-4 border border-white/5 rounded-lg">Kubernetes Java istemci kitaplığında, güvenliği ihlal edilmiş bir bölmenin, etkinleştirmeTarCompressing yanlış olduğunda tar dışı copyDirectoryFromPod aracılığıyla kopyalama işlemlerini yürüten istemci makinesindeki rastgele konumlarda yeni dosyalar oluşturabildiği bir güvenlik sorunu keşfedildi.</p></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="globe" class="w-3.5 h-3.5 text-[#26A269]"></i>Orijinal Aciklama (Ingilizce)</h3><p class="text-white/40 leading-relaxed text-xs bg-[#1C1C1E]/10 p-4 border border-white/5 rounded-lg italic">
CVE ID, Product, Vendor ...
Pricing
Browse by Apps
View All Apps
Splunk
Slack
Webhook
Teams
Jira
Chrome
API
</p></div><div><h3 class="text-xs font-bold text-white/50 mb-3 uppercase tracking-wider flex items-center gap-2"><i data-lucide="external-link" class="w-3.5 h-3.5 text-[#26A269]"></i>Referanslar</h3><div class="bg-[#1C1C1E]/10 p-4 border border-white/5 rounded-lg"><a href="https://cvefeed.io/vuln/detail/CVE-2026-15687" target="_blank" class="text-[#3b82f6] hover:underline font-mono text-xs break-all">https://cvefeed.io/vuln/detail/CVE-2026-15687</a></div></div><div class="border-t border-white/5 pt-4 flex justify-between items-center text-xs"><span class="text-white/30">Otomatik olarak RSS feed'inden ice aktarildi.</span><a href="https://cvefeed.io/vuln/detail/CVE-2026-15687" target="_blank" class="inline-flex items-center gap-1.5 text-[#26A269] hover:underline font-bold transition-all">Kaynagi Goruntule <i data-lucide="external-link" class="w-3.5 h-3.5"></i></a></div></div>
Entry Stats
Views
10
Downloads
2
Comments
0