CVE-2026-19438
Received Received - Intake

Path Traversal in ABB Mint Workbench I

Vulnerability report for CVE-2026-19438, including description, CVSS score, EPSS score, affected products, exploitability, helpful resources, and attack-flow context.

Publication date: 2026-09-23

Last updated on: 2026-09-23

Assigner: Asea Brown Boveri Ltd. (ABB)

Description

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') vulnerability in ABB Mint Workbench I. This issue affects Mint Workbench I: through 5876.

CVSS Scores

EPSS Scores

Probability:
Percentile:

Meta Information

Published
2026-09-23
Last Modified
2026-09-23
Generated
2026-09-23
AI Q&A
2026-09-23
EPSS Evaluated
N/A
NVD
EUVD

Affected Vendors & Products

Showing 1 associated CPE
Vendor Product Version / Range
abb mint_workbench_i to 5876 (inc)

Helpful Resources

Exploitability

CWE
CWE Icon
KEV
KEV Icon
CWE ID Description
CWE-22 The product uses external input to construct a pathname that is intended to identify a file or directory that is located underneath a restricted parent directory, but the product does not properly neutralize special elements within the pathname that can cause the pathname to resolve to a location that is outside of the restricted directory.

Attack-Flow Graph

AI Quick Actions

Instant insights powered by AI
Executive Summary

This is a Path Traversal vulnerability in ABB Mint Workbench I. It allows attackers to access restricted directories outside the intended path by manipulating file paths. This could lead to unauthorized file access or execution.

Detection Guidance

Detecting this path traversal vulnerability requires checking for improper input validation in file paths within ABB Mint Workbench I. Monitor application logs for unusual file access patterns or requests containing sequences like '../' or '/etc/passwd'. Inspect network traffic for abnormal file path requests to the application's web server or file system. Validate if the application restricts access to its intended directories.

Impact Analysis

An attacker could exploit this to read sensitive files, modify system configurations, or execute malicious code on the affected system. This may lead to data breaches, system compromise, or operational disruptions.

Compliance Impact

This vulnerability could result in unauthorized access to sensitive data, violating GDPR and HIPAA requirements for data protection. Non-compliance may lead to legal penalties, fines, or reputational damage.

Mitigation Strategies

Update Mint Workbench I to the latest version to address the path traversal vulnerability. Restrict network access to the application and monitor for unusual file access patterns. Apply network segmentation to limit exposure.

Chat Assistant

Ask questions about this CVE
Hi! I’m here to help you understand CVE-2026-19438. Ask me anything about the vulnerability, its impact, or mitigation strategies.
0/70

EPSS Chart