CVE-2026-28769

A path traversal vulnerability exists in the /IDC_Logging/checkifdone.cgi script in International Datacasting Corporation (IDC) SFX Series SuperFlex Satellite Receiver Web management portal version 101. An authenticated attacker can manipulate the `file` parameter to traverse directories and enumerate arbitrary files on the underlying filesystem. Due to the insecure perl file path handling function in use, a authenticated actor is able to preform directory traversal, with the backup endpoint confirming a file exists by indicating that a backup operation was successful or when using the path of a non existent file, the returned status is failed.
References
Link Resource
https://www.abdulmhsblog.com/posts/sfx2100-vulns/ Exploit Third Party Advisory
Configurations

Configuration 1 (hide)

AND
cpe:2.3:o:datacast:sfx2100_firmware:-:*:*:*:*:*:*:*
cpe:2.3:h:datacast:sfx2100:-:*:*:*:*:*:*:*

History

17 Jun 2026, 10:29

Type Values Removed Values Added
Summary
  • (es) Una vulnerabilidad de salto de ruta existe en el script /IDC_Logging/checkifdone.cgi en el portal de gestión web del receptor de satélite SuperFlex de la serie SFX de International Datacasting Corporation (IDC) versión 101. Un atacante autenticado puede manipular el parámetro 'file' para recorrer directorios y enumerar archivos arbitrarios en el sistema de archivos subyacente. Debido a la función insegura de manejo de rutas de archivos Perl en uso, un actor autenticado puede realizar un salto de directorio, con el endpoint de copia de seguridad confirmando que un archivo existe al indicar que una operación de copia de seguridad fue exitosa o cuando se utiliza la ruta de un archivo no existente, el estado devuelto es fallido.

09 Mar 2026, 18:20

Type Values Removed Values Added
First Time Datacast
Datacast sfx2100
Datacast sfx2100 Firmware
References () https://www.abdulmhsblog.com/posts/sfx2100-vulns/ - () https://www.abdulmhsblog.com/posts/sfx2100-vulns/ - Exploit, Third Party Advisory
CPE cpe:2.3:h:datacast:sfx2100:-:*:*:*:*:*:*:*
cpe:2.3:o:datacast:sfx2100_firmware:-:*:*:*:*:*:*:*
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 6.5

05 Mar 2026, 06:16

Type Values Removed Values Added
References
  • {'url': 'https://www.abdulmhsblog.com/posts/spfx-vulnrabilities/', 'source': 'b7efe717-a805-47cf-8e9a-921fca0ce0ce'}
  • () https://www.abdulmhsblog.com/posts/sfx2100-vulns/ -

04 Mar 2026, 07:16

Type Values Removed Values Added
New CVE

Information

Published : 2026-03-04 07:16

Updated : 2026-06-17 10:29


NVD link : CVE-2026-28769

Mitre link : CVE-2026-28769

CVE.ORG link : CVE-2026-28769


JSON object : View

Products Affected

datacast

  • sfx2100
  • sfx2100_firmware
CWE
CWE-22

Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')