CVE-2026-6074
Severity CVSS v4.0:
CRITICAL
Type:
Unavailable / Other
Publication date:
23/04/2026
Last modified:
04/05/2026
Description
Intrado 911 Emergency Gateway (EGW) 5.x, 6.x, and 7.x contain a path traversal vulnerability in the download_debuglog_file.php endpoint used for Debug Logs downloads. An unauthenticated attacker can manipulate the name parameter to read arbitrary files outside the intended directory
Impact
Base Score 4.0
9.30
Severity 4.0
CRITICAL



