CVE-2026-30283: n/a
An arbitrary file overwrite vulnerability in PEAKSEL D.O.O. NIS Animal Sounds and Ringtones v1.3.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
AI Analysis
Technical Summary
CVE-2026-30283 describes an arbitrary file overwrite vulnerability in PEAKSEL D.O.O. NIS Animal Sounds and Ringtones v1.3.0. Attackers can exploit the file import functionality to overwrite important internal files, potentially resulting in arbitrary code execution or information disclosure. The vulnerability is classified under CWE-22, indicating a directory traversal or path traversal issue. The CVSS v3.1 base score is 9.8, reflecting high impact on confidentiality, integrity, and availability. There is no indication of known exploits in the wild or vendor-provided patches at this time.
Potential Impact
Exploitation of this vulnerability can lead to complete compromise of the affected system by allowing attackers to overwrite critical files. This may result in arbitrary code execution, enabling attackers to run malicious code with the privileges of the application. Additionally, sensitive information may be exposed due to unauthorized file modifications. The critical CVSS score (9.8) reflects the high potential impact on confidentiality, integrity, and availability.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, users should consider disabling or restricting the file import functionality if possible, and monitor for any updates from PEAKSEL D.O.O. regarding patches or mitigations. No official fix or temporary workaround is currently documented.
CVE-2026-30283: n/a
Description
An arbitrary file overwrite vulnerability in PEAKSEL D.O.O. NIS Animal Sounds and Ringtones v1.3.0 allows attackers to overwrite critical internal files via the file import process, leading to arbitrary code execution or information exposure.
CVSS v3.1
Score 9.8critical
Affected software
pkg:github/peaksel/nis-animal-sounds-and-ringtonesRun on your own infrastructure? Check whether these packages are installed with threat-finder — our free open-source scanner.
Weaknesses
AI-Powered Analysis
Machine-generated threat intelligence
Technical Analysis
CVE-2026-30283 describes an arbitrary file overwrite vulnerability in PEAKSEL D.O.O. NIS Animal Sounds and Ringtones v1.3.0. Attackers can exploit the file import functionality to overwrite important internal files, potentially resulting in arbitrary code execution or information disclosure. The vulnerability is classified under CWE-22, indicating a directory traversal or path traversal issue. The CVSS v3.1 base score is 9.8, reflecting high impact on confidentiality, integrity, and availability. There is no indication of known exploits in the wild or vendor-provided patches at this time.
Potential Impact
Exploitation of this vulnerability can lead to complete compromise of the affected system by allowing attackers to overwrite critical files. This may result in arbitrary code execution, enabling attackers to run malicious code with the privileges of the application. Additionally, sensitive information may be exposed due to unauthorized file modifications. The critical CVSS score (9.8) reflects the high potential impact on confidentiality, integrity, and availability.
Mitigation Recommendations
Patch status is not yet confirmed — check the vendor advisory for current remediation guidance. Until an official fix is available, users should consider disabling or restricting the file import functionality if possible, and monitor for any updates from PEAKSEL D.O.O. regarding patches or mitigations. No official fix or temporary workaround is currently documented.
Technical Details
- Data Version
- 5.2
- Assigner Short Name
- mitre
- Date Reserved
- 2026-03-04T00:00:00.000Z
- Cvss Version
- null
- State
- PUBLISHED
Threat ID: 69cc0a0fe6bfc5ba1d2cf778
Added to database: 03/31/2026, 17:53:19 UTC
Last enriched: 07/05/2026, 21:45:04 UTC
Last updated: 07/31/2026, 19:22:58 UTC
Views: 174
Community Reviews
0 reviewsCrowdsource mitigation strategies, share intel context, and vote on the most helpful responses. Sign in to add your voice and help keep defenders ahead.
Want to contribute mitigation steps or threat intel context? Sign in or create an account to join the community discussion.
Actions
Updates to AI analysis require Pro Console access. Upgrade inside Console → Billing.
Need more coverage?
Upgrade to Pro Console for AI refresh and higher limits.
For incident response and remediation, OffSeq services can help resolve threats faster.
Latest Threats
Check if your credentials are on the dark web
Instant breach scanning across billions of leaked records. Free tier available.