CVE-2026-105275: Satel Netco Design

Medium severity, CVSS 4.3. EPSS: 0.3% chance of exploitation in the next 30 days.

Satel Netco Design versions prior to v2.1.7 contains a relative path traversal vulnerability in its data import functionality. An authenticated user with Viewer privileges could access file paths outside the intended directory and use observable application responses to determine whether files exist on the host system.

Affected products

  • Satel Satel Netco Design: before v2.1.7 (fixed in v2.1.7)

Published 2026-10-08. Last modified 2026-10-09.