CVE-2026-25069 - SunFounder Pironman Dashboard <= 1.3.13 path traversal arbitrary file read/deletion

CVE-2026-25069 - SunFounder Pironman Dashboard <= 1.3.13 path traversal arbitrary file read/deletion

CVE ID : CVE-2026-25069 Published : Feb. 1, 2026, 12:16 a.m. | 59 minutes ago Description : SunFounder Pironman Dashboard (pm_dashboard) version 1.3.13 and prior contain a path traversal vulnerability in the log file API endpoints. An unauthenticated remote attacker can supply traversal sequences via the filename parameter to read and delete arbitrary files. Successful exploitation can disclose sensitive information and delete critical system files, resulting in data loss and potential system compromise or denial of service. Severity: 9.3 | CRITICAL Visit the link for more details, such as CVSS details, affected products, timeline, and more...

CVE Details

Severity
CRITICAL
Published
Feb. 1, 2026
Impact: path traversal