Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting directory traversal in the web server context. Attackers can manipulate file path parameters to access sensitive files outside the intended directory structure.
Metrics
Affected Vendors & Products
References
History
Mon, 08 Jun 2026 19:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Metrics |
ssvc
|
Sun, 07 Jun 2026 11:30:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Lyrion
Lyrion lyrion Music Server |
|
| Vendors & Products |
Lyrion
Lyrion lyrion Music Server |
Fri, 05 Jun 2026 13:45:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| Description | Lyrion Music Server 9.2.0 contains a path traversal vulnerability that allows unauthenticated attackers to read arbitrary files by exploiting directory traversal in the web server context. Attackers can manipulate file path parameters to access sensitive files outside the intended directory structure. | |
| Title | Lyrion Music Server 9.2.0 Path Traversal File Read | |
| Weaknesses | CWE-22 | |
| References |
| |
| Metrics |
cvssV3_1
|
Status: PUBLISHED
Assigner: VulnCheck
Published: 2026-06-05T13:24:28.474Z
Updated: 2026-06-08T18:17:17.665Z
Reserved: 2026-06-04T10:47:01.275Z
Link: CVE-2026-50234
Updated: 2026-06-08T18:13:27.906Z
Status : Deferred
Published: 2026-06-05T14:16:36.720
Modified: 2026-06-08T19:16:46.547
Link: CVE-2026-50234
No data.