CVE-2026-11431: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Altium Altium Enterprise Server
A path traversal vulnerability exists in the Projects Service download endpoint shared by Altium Enterprise Server and Altium 365. An authenticated user can supply a crafted path parameter that bypasses validation, allowing arbitrary files (including entire directories returned as archives) to be read from the server filesystem. Because the readable files include service configuration and credential material, exploitation can be used to gather information enabling further compromise. The issue can be combined with CVE-2026-11424 to reach the cloud-side endpoint. On multi-tenant Altium 365 deployments, the readable configuration could have exposed credentials shared across services. Altium Enterprise Server is fixed in 8.1.1; the issue has been remediated in Altium 365 at the service level.
AI Analysis
Technical Summary
This vulnerability (CWE-22) allows authenticated users to supply crafted path parameters to the Projects Service download endpoint, bypassing validation and enabling arbitrary file read access on the server filesystem. The exposed files include service configuration and credentials, potentially enabling further attacks. The issue affects Altium Enterprise Server versions prior to 8.1.1. Altium 365's cloud service has been remediated server-side. The vulnerability can be combined with CVE-2026-11424 to escalate impact on cloud endpoints.
Potential Impact
Exploitation allows an authenticated user to read arbitrary files and directories from the server, including sensitive configuration and credential files. This can lead to information disclosure and facilitate further compromise of the affected system or cloud environment. The vulnerability affects on-premises Altium Enterprise Server installations prior to version 8.1.1. Altium 365 cloud service users are protected by server-side remediation.
Mitigation Recommendations
Upgrade Altium Enterprise Server to version 8.1.1 or later, where this vulnerability is fixed. For Altium 365 users, the issue has been remediated at the cloud service level by the vendor, so no additional action is required. Verify that your deployment is updated accordingly to prevent exploitation.
CVE-2026-11431: CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal') in Altium Altium Enterprise Server
Description
A path traversal vulnerability exists in the Projects Service download endpoint shared by Altium Enterprise Server and Altium 365. An authenticated user can supply a crafted path parameter that bypasses validation, allowing arbitrary files (including entire directories returned as archives) to be read from the server filesystem. Because the readable files include service configuration and credential material, exploitation can be used to gather information enabling further compromise. The issue can be combined with CVE-2026-11424 to reach the cloud-side endpoint. On multi-tenant Altium 365 deployments, the readable configuration could have exposed credentials shared across services. Altium Enterprise Server is fixed in 8.1.1; the issue has been remediated in Altium 365 at the service level.
CVSS v4.0
Score 8.3high
Affected software
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
This vulnerability (CWE-22) allows authenticated users to supply crafted path parameters to the Projects Service download endpoint, bypassing validation and enabling arbitrary file read access on the server filesystem. The exposed files include service configuration and credentials, potentially enabling further attacks. The issue affects Altium Enterprise Server versions prior to 8.1.1. Altium 365's cloud service has been remediated server-side. The vulnerability can be combined with CVE-2026-11424 to escalate impact on cloud endpoints.
Potential Impact
Exploitation allows an authenticated user to read arbitrary files and directories from the server, including sensitive configuration and credential files. This can lead to information disclosure and facilitate further compromise of the affected system or cloud environment. The vulnerability affects on-premises Altium Enterprise Server installations prior to version 8.1.1. Altium 365 cloud service users are protected by server-side remediation.
Mitigation Recommendations
Upgrade Altium Enterprise Server to version 8.1.1 or later, where this vulnerability is fixed. For Altium 365 users, the issue has been remediated at the cloud service level by the vendor, so no additional action is required. Verify that your deployment is updated accordingly to prevent exploitation.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- Altium
- Date Reserved
- 2026-06-05T21:03:16.924Z
- Cvss Version
- 4.0
- State
- PUBLISHED
- Remediation Level
- null
Threat ID: 6a2340b3e29bf47b50c78623
Added to database: 06/05/2026, 21:33:39 UTC
Last enriched: 06/13/2026, 09:51:19 UTC
Last updated: 07/31/2026, 19:22:57 UTC
Views: 87
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
External Links
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.