A vulnerability was determined in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 1.3.0. Affected by this issue is some unknown functionality of the file /SubstationWEBV2/app/..;/main/upfile. Executing a manipulation of the argument path can lead to path traversal. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way.
Metrics
Affected Vendors & Products
References
History
Tue, 26 May 2026 14:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | A vulnerability was determined in Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform 1.3.0. Affected by this issue is some unknown functionality of the file /SubstationWEBV2/app/..;/main/upfile. Executing a manipulation of the argument path can lead to path traversal. The attack may be performed from remote. The exploit has been publicly disclosed and may be utilized. The vendor was contacted early about this disclosure but did not respond in any way. | |
| Title | Acrel Electrical EEMS Enterprise Power Operation and Maintenance Cloud Platform upfile path traversal | |
| First Time appeared |
Acrel Electrical
Acrel Electrical eems Enterprise Power Operation And Maintenance Cloud Platform |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:acrel_electrical:eems_enterprise_power_operation_and_maintenance_cloud_platform:*:*:*:*:*:*:*:* | |
| Vendors & Products |
Acrel Electrical
Acrel Electrical eems Enterprise Power Operation And Maintenance Cloud Platform |
|
| References |
| |
| Metrics |
cvssV2_0
|
Status: PUBLISHED
Assigner: VulDB
Published:
Updated: 2026-05-26T13:30:39.652Z
Reserved: 2026-05-26T07:14:38.676Z
Link: CVE-2026-9550
No data.
Status : Received
Published: 2026-05-26T15:16:58.000
Modified: 2026-05-26T15:16:58.000
Link: CVE-2026-9550
No data.
OpenCVE Enrichment
Updated: 2026-05-26T15:30:08Z