CVE-2026-6074Disclosure

LOWCVSS 9.3 · CRITICAL

Signal is active with 1 mentions in latest observed window

Immediate actions

  • Patch affected systems immediately

Recommended action window: Monitor and triage in normal cycle

NVD description

Intrado 911 Emergency Gateway (EGW) 5.x, 6.x, and 7.x contain a path traversal vulnerability in the download_debuglog_file.php endpoint used for Debug Logs downloads. An unauthenticated attacker can manipulate the name parameter to read arbitrary files outside the intended directory.

0.5/ 10 priority

Sources & remediation

Weakness type (CWE)
CWE-35

Priority

LOW

Exploitation

NONE

PoC

NONE

Patch

AVAILABLE

Momentum

STABLE

Threat summary

  • Patch or workaround signal is available
  • 5 mentions across 3 observed days
  • Momentum state: stable

What's happening

  • Patch or workaround mentioned in 3 signals
  • Technical details provided in 5 signals
  • Disclosure: 3 classified signals
  • Peaked 2d ago at 3 mentions (2026-04-23); latest day: 1
  • 5 total mentions across 3 days

Deep dive

Activity timeline5 mentions / 3d
01223Mentions · 2026-04-23: 3Mentions · 2026-04-27: 1Mentions · 2026-05-02: 1Patch / Workaround · 2026-04-23: 2Patch / Workaround · 2026-04-27: 1Technical Details · 2026-04-23: 3Technical Details · 2026-04-27: 1Technical Details · 2026-05-02: 104-2304-2705-02
Signal classification2 categories
Disclosure
360.0%
Patch
240.0%
Referenced assets5 URLs
Classification over time
DateTotalLabels
2026-04-233
Disclosure2Patch1
2026-04-271
Patch1
2026-05-021
Disclosure1
Full discourse5 posts
  • Gray Hats@the_yellow_fall
    Patch

    Critical 9.8 CVSS flaw (CVE-2026-6074) in Intrado 911 Gateway allows unauthenticated access to management tools. Protect emergency services and patch today. #Intrado #911Emergency #CVE20266074 #CyberSecurity #PublicSafety #InfoSec #PatchNow https://securityonline.info/intrado-911-emergency-gateway-vulnerability-cve-2026-6074/ https://t.co/3UMn3V6bzi

    Post summary

    The message highlights a critical CVE‑2026‑6074 in the Intrado 911 Gateway, noting unauthenticated access to management tools and urging immediate patching.

    01021379
    12.5K followersView on X
  • IntegSec@integ_sec
    Disclosure

    CVE-2026-6074: Intrado 911 Emergency Gateway Path Traversal - What It Means for Your Business and How to Respond https://hubs.li/Q04fbV_c0

    Post summary

    The text announces a path traversal vulnerability in Intrado’s 911 Emergency Gateway and hints at response measures, but it does not include PoC, exploit details, or patch information.

    0000036
    29 followersView on X
  • CVE@CVEnew
    Disclosure

    CVE-2026-6074 A path traversal condition in Intrado 911 Emergency Gateway could allow an attacker with existing network access the ability to access the EGW management interface with… https://www.cve.org/CVERecord?id=CVE-2026-6074

    Post summary

    A path traversal vulnerability (CVE‑2026‑6074) has been disclosed, allowing network‑local attackers potential access to the Intrado 911 Emergency Gateway management interface.

    0000097
    57.2K followersView on X
  • WindowsForum@windowsforum
    Disclosure

    🚨 CVE-2026-6074: 911 gateway… unauth mgmt access + read/modify/delete files. Cool cool cool. If your “emergency” stack can be poked like a USB stick, patch yesterday. https://windowsforum.com/threads/intrado-egw-cve-2026-6074-patch-urgently-unauthenticated-management-file-access.414913/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #IcsVulnerability #IntradoEgw #Cve20266074 #EmergencyCommunicationsSecurity https://t.co/Y8zGLF3SZW

    Post summary

    CVE-2026-6074 exposes unauthenticated management access allowing read/modify/delete of files in an emergency communication stack; a patch was released recently.

    0000045
    1.1K followersView on X
  • WindowsForum@windowsforum
    Patch

    🚨 CVE-2026-6074 is the “got in once, then walk straight to admin” nightmare: unauth file read/modify/delete on 911 infrastructure. Patch day isn’t optional—save lives, stop traversal. https://windowsforum.com/threads/cve-2026-6074-path-traversal-in-intrado-911-emergency-gateway-urgent-patch.414915/?utm_source=x&utm_medium=social&utm_campaign=news_node84 #Cve20266074 #Intrado911 #EmergencyServicesSecurity https://t.co/f7zUEFEK16

    Post summary

    CVE-2026-6074 is a path‑traversal flaw allowing unauthenticated read, write, and delete operations on 911 infrastructure; an urgent patch has been released and must be applied immediately.

    0000045
    1.1K followersView on X

Explore more