Junglewise Threat Intelligence

CVE-2026-34030: Wertheim SafeController path traversal via branch code injection

CVE-2026-34030 · Severity: info · CVSS 6.9 · Published 2026-06-15

Technologies: Wertheim SafeController. Vendors: Wertheim.

Executive brief

Wertheim SafeController, a software suite used to manage bank vault rooms and safe deposit boxes, contains a vulnerability in how it handles branch office codes. An authorized user with administrative privileges can input malicious characters when creating a new branch, allowing them to manipulate where files are stored on the server's hard drive. This could lead to unauthorized file placement or, when combined with other flaws, a complete takeover of the server managing the vault systems.

Technical details

A path traversal vulnerability exists in Wertheim SafeController Software (AssemblyVersion 6.15.8328.28014) due to insufficient input validation of the 'branch code' field during branch creation. An authenticated attacker possessing the 'settings_branches_manage' privilege can inject path traversal sequences (e.g., ../) or other malicious symbols into the branch code. Because this code is subsequently used to generate filesystem paths for profile pictures, settings, and uploaded files, the attacker can influence file operations to write data to unintended locations. When chained with other vulnerabilities in the suite (such as broken access control or upload bypasses), this can lead to remote code execution. A patch is available from the vendor upon request.

Affected products

  • Wertheim SafeController Software for VAULT ROOMS AssemblyVersion 6.15.8328.28014

Timeline

  • 2023-04-03: other: Vulnerability discovered by SEC Consult
  • 2026-06-15: advisory: Public disclosure of CVE-2026-34030

References

Related threats