Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
Home Assistant Core < 2026.6.0 Path Traversal File Write via Backup Upload
Vulnerability Description
Home Assistant Core before 2026.6.0 contains a path traversal vulnerability that allows unauthenticated attackers to write arbitrary files to any directory on the host filesystem by uploading a crafted backup archive during the initial onboarding window. Attackers can manipulate the 'name' field inside the uploaded archive's backup.json to supply an absolute path, causing pathlib.Path.__truediv__ to discard the configured backup directory prefix and write attacker-controlled content to arbitrary locations, with full filesystem access when the process runs as root.
CVSS Information
CVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:C/C:N/I:H/A:L
Vulnerability Type
对路径名的限制不恰当(路径遍历)
Vulnerability Title
home-assistant Home Assistant Core 路径遍历漏洞
Vulnerability Description
home-assistant Home Assistant Core是home-assistant社区的一款智能家居自动化平台。 home-assistant Home Assistant Core 2026.6.0之前版本存在路径遍历漏洞,该漏洞源于路径遍历问题,允许未经身份验证的攻击者在初始引导窗口期间上传特制的备份存档,操作备份存档中backup.json的'name'字段以提供绝对路径,导致路径前缀被丢弃,向任意目录写入任意文件。
CVSS Information
N/A
Vulnerability Type
N/A