CVE-2026-5703: Path Traversal in Satel Iberia SenNet Datalogger Serie 200
Path traversal vulnerability in the Satel Iberia SenNet Datalogger Serie 200, specifically in the web portal provided by the device, which allows an authenticated user to read any file or list any directory accessible to the system user running the web server. This is possible by modifying the URL to include a path traversal payload. Successful exploitation of this vulnerability could allow an attacker to access critical system files containing confidential information.
Affected Software
Remediation
Recommended actions to resolve this vulnerability, in priority order.
- Upgrade
Upgrade
Satel Iberia SenNet Datalogger Serie 200to a version that resolves this vulnerability.Fixed in V7.2a
Event History
Frequently Asked Questions
Does exploitation require an existing account?
Yes. The issue requires an authenticated user of the device's web portal; the available information does not describe an authentication bypass or unauthenticated exploitation.
What information can an attacker access?
An attacker can read files and list directories that are accessible to the operating-system user running the web server. This may expose critical system files containing confidential information.