CVE-2026-28701: Daktronics Controller Firmware Path Traversal
Various versions of Daktronics Controller Firmware could allow authenticated and unauthenticated remote users to escape the intended directory and enumerate arbitrary file system paths.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Daktronics Controller Firmwareto a version that resolves this vulnerability.Fixed in 8.117.0.x - Upgrade
Upgrade
Daktronics Controller Firmwareto a version that resolves this vulnerability.Fixed in 9.43.0.x - Upgrade
Upgrade
Daktronics Controller Firmwareto a version that resolves this vulnerability.Fixed in 10.34.0.x
Event History
Frequently Asked Questions
What is the severity of CVE-2026-28701?
CVE-2026-28701 has a critical severity rating of 9.3.
How do I fix CVE-2026-28701?
To fix CVE-2026-28701, update the Daktronics Controller Firmware to the latest version that addresses this vulnerability.
What systems are affected by CVE-2026-28701?
CVE-2026-28701 affects various versions of Daktronics Controller Firmware.
What type of vulnerability is CVE-2026-28701?
CVE-2026-28701 is a Path Traversal vulnerability that allows users to escape the intended directory.
Can CVE-2026-28701 be exploited by unauthenticated users?
Yes, CVE-2026-28701 can be exploited by both authenticated and unauthenticated remote users.