Path traversal vulnerability in Remote Spark (https://www.Remotespark.Com/) SparkView allows reading and writing arbitrary files in all directories as root. This leads to RCE. The affected component is the RDP drive redirection. Depending on implementation, the vulnerability can be exploited by an unauthenticated attacker.
This issue affects SparkView: before build 1127.
CVSS
No CVSS.
References
| Link | Resource |
|---|---|
| https://www.remotespark.com/view/new.html |
Configurations
No configuration.
History
29 May 2026, 13:16
| Type | Values Removed | Values Added |
|---|---|---|
| New CVE |
Information
Published : 2026-05-29 13:16
Updated : 2026-05-29 15:39
NVD link : CVE-2026-8326
Mitre link : CVE-2026-8326
CVE.ORG link : CVE-2026-8326
JSON object : View
Products Affected
No product.
CWE
CWE-23
Relative Path Traversal
