CVE-2026-11423: Path Traversal in Altium Enterprise Server Collaboration Service Allows Privilege Escalation

Published Jun 5, 2026
·
Updated

A path traversal vulnerability exists in the Altium Enterprise Server Collaboration Service due to improper handling of user-supplied filenames in the MCAD and Simulation file download flows. A regular authenticated user can submit a collaboration message containing a crafted filename, which is later used to construct the download path on the server without validation, allowing arbitrary files to be read from the server filesystem.

Because the readable files include the server's master configuration, which stores credentials for privileged accounts, exploitation can lead to authenticating as a system administrator and gaining full control of the server. Altium 365 cloud deployments are not affected.

Affected Software

1 affected component
Altium Altium Enterprise Server Collaboration Service

Remediation

Recommended actions to resolve this vulnerability, in priority order.

  1. Configuration

    Disable MCAD and Simulation file download handling (or disable the Collaboration Service file-download functionality) until a vendor patch is applied to prevent processing of user-supplied filenames for downloads.

    Altium Enterprise Server Collaboration Service MCAD and Simulation file downloads = disabled
  2. Compensating control

    Restrict access to the Collaboration Service download endpoints to trusted IP addresses or internal networks at the network firewall or reverse proxy to prevent untrusted authenticated users from reaching the vulnerable functionality.

  3. Operational

    Rotate credentials for privileged accounts stored in the server master configuration and invalidate existing sessions/tokens, since those credentials may be readable if the vulnerability was exploited.

  4. Operational

    Audit server logs and collaboration message uploads for suspicious or crafted filenames and investigate for signs of exfiltration or unauthorized file access; if compromise is detected, perform remediation such as restoring from known-good backups and further incident response.

Event History

Jun 5, 2026
CVE Published
via MITRE·08:12 PM
Data Sourced
via MITRE·08:12 PM
DescriptionWeakness
Data Sourced
via NVD·09:16 PM
DescriptionSeverityWeakness

Frequently Asked Questions

1

What is the severity of CVE-2026-11423?

The severity of CVE-2026-11423 is critical with a CVSS score of 9.4.

2

How do I fix CVE-2026-11423?

To fix CVE-2026-11423, update to the latest version of Altium Enterprise Server Collaboration Service that addresses the path traversal vulnerability.

3

What are the implications of CVE-2026-11423?

CVE-2026-11423 allows a regular authenticated user to escalate privileges through crafted filenames, potentially compromising system security.

4

Who is affected by CVE-2026-11423?

Users of Altium Enterprise Server Collaboration Service are affected by CVE-2026-11423 due to its path traversal vulnerability.

5

When was CVE-2026-11423 published?

CVE-2026-11423 was published on June 5, 2026.

Contact

SecAlerts Pty Ltd.
132 Wickham Terrace
Fortitude Valley,
QLD 4006, Australia
info@secalerts.co
By using SecAlerts services, you agree to our services end-user license agreement. This website is safeguarded by reCAPTCHA and governed by the Google Privacy Policy and Terms of Service. All names, logos, and brands of products are owned by their respective owners, and any usage of these names, logos, and brands for identification purposes only does not imply endorsement. If you possess any content that requires removal, please get in touch with us.
© 2026 SecAlerts Pty Ltd.
ABN: 70 645 966 203, ACN: 645 966 203