CyberRota Analysis
AI-GeneratedThe GisLab Laboratory Management System versions prior to 1.5 are vulnerable to a path traversal attack, which allows unauthorized access to files outside of the intended directory. This flaw could lead to the exposure of sensitive data and potential system compromise. Organizations using affected versions should prioritize patching to mitigate the risk of exploitation.
CVE
CVE-2026-9166
Severity
HIGH
CVSS
7.5
EPSS
0.34%
Original NVD Description
Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in GIS Informatics GisLab Laboratory Management System allows Path Traversal. This issue affects GisLab Laboratory Management System: from 1.4.03 before 1.5.