AlgoSec Firewall Analyzer Path Traversal Vulnerability Allowing Remote Code Execution

Vulnerability

A path traversal vulnerability allowing code injection has been identified in AlgoSec Firewall Analyzer versions A33.0 (up to build 320) and A33.10 (up to build 210) on 64-bit Linux. This vulnerability arises from improper limitations on pathnames, which could be exploited to traverse directories and inject malicious code.

Impact

Exploitation of this vulnerability allows for path traversal and remote code execution on the affected system.

Remediation

Users can upgrade to AlgoSec Firewall Analyzer A33.0 (build 330 and above) or A33.10 (build 220 and above) to address this vulnerability.

Added: Nov 12, 2025, 10:20 AM
Updated: Nov 12, 2025, 6:10 PM

Vulnerability Rating

Custom Algorithm
spread
2.6
impact
7.5
exploitability
4.9
remediation
7.7
relevance
1.0
threat
0.0
urgency
5.7
incentive
1.7

Our algorithm analyzes dozens of metrics to generate these 8 key vulnerability categories, which are then combined to calculate the overall risk score.