Predictive Vulnerability Intelligence.

Product

  • Product
  • Pricing
  • Documentation

Company

  • About
  • Partnerships
  • Blog
  • Support

Legal

  • Terms
  • Privacy
  • Data Licensing

© 2026 FAUCET Technologies LLC. All rights reserved.

CVE-2026-40024

28
FAUCET Score

OVERVIEW CVE-2026-40024 is a path traversal vulnerability in The Sleuth Kit through version 4.14.0, specifically affecting the tsk_recover utility. The vulnerability enables attackers to write files to arbitrary locations outside the intended recovery directory by exploiting path traversal sequences (/../) embedded in crafted filesystem image filenames or directory paths. SEVERITY This vulnerability carries a CVSS v3.1 score of 7.1 (HIGH) with a local attack vector requiring user interaction but no elevated privileges. The impact is significant, permitting both confidentiality and integrity compromise through arbitrary file write capabilities. An attacker could potentially achieve code execution by overwriting shell configuration files or cron entries, though availability is not directly affected. The FAUCET Risk Score of 47.0/100 indicates moderate overall risk. EXPLOITATION STATUS There is no evidence of active exploitation in the wild. The vulnerability does not appear on CISA's Known Exploited Vulnerabilities (KEV) catalog and is classified as inactive on vulnerability hotlists. The EPSS score of 0.0004 suggests minimal probability of exploitation in the near term. However, the relative simplicity of the attack vector and the potential for post-exploitation persistence through file overwrites warrants monitoring for future proof-of-concept release or weaponization.

Impacted Technologies

VendorProductVersion(s)CPE
< 4.15.0CPE matchmatch criteria
cpe:2.3:a:sleuthkit:the_sleuth_kit:*:*:*:*:*:*:*:*
>= 0, <= 4.14.0CPE match
cpe:2.3:a:sleuthkit:the_sleuth_kit:*:*:*:*:*:*:*:*

CVSS Data

CVSS version used by this source: 4.0

8.4HIGH

CVSS:4.0/AV:L/AC:L/AT:N/PR:N/UI:P/VC:H/VI:H/VA:N/SC:N/SI:N/SA:N/E:X/CR:X/IR:X/AR:X/MAV:X/MAC:X/MAT:X/MPR:X/MUI:X/MVC:X/MVI:X/MVA:X/MSC:X/MSI:X/MSA:X/S:X/AU:X/R:X/V:X/RE:X/U:X

Attack Vector
LOCAL
Attack Complexity
LOW
Attack Requirements
NONE
Privileges Required
NONE
User Interaction
PASSIVE
VS Confidentiality
HIGH
VS Integrity
HIGH
VS Availability
NONE
SS Confidentiality
NONE
SS Integrity
NONE
SS Availability
NONE
Exploit Maturity
NOT_DEFINED
CvssVersion
4.0

Exploit Intelligence

EPSS Score
0.17%
Probability of exploitation in next 30 days
EPSS Percentile
6.3%
Percentile rank of EPSS score among Peer Group
As of 2026-07-27
Model: v2026.06.15
This CVE's current EPSS score of 0.0017 is in the 4th percentile among its peer group of 11,617 CVEs.

Social Chatter

The average CVE in this peer group has 0.0 Twitter, 0.1 Reddit, 0.1 Bluesky, 0.0 Mastodon, and 0.2 GitHub mentions.

Media Mentions

No media coverage found for this CVE.

The average CVE in this peer group has 0.3 InfoSec Media, 0.0 Vendor Blog, and 0.0 Security Researcher mentions.

Remediation

Patch Available

Vendor Patches (3)

github_advisorypatch availablevia nvd_reference
View patch
microsoftpatch availablevia msrc
Product: azl3 sleuthkit 4.12.1-1 on Azure Linux 3.0Fixed in: 4.12.1-2
microsoftpatch availablevia msrc
Product: 20112-17084Fixed in: 4.12.1-2

Vendor Advisories (1)

microsoft2026-Apr/CVE-2026-40024Important

Sleuth Kit tsk_recover Path Traversal

Apr 2, 2026

References

github.com / sleuthkit/sleuthkit/commit/a3f96b3bc36a8bb1a00c297f77110d4a6e7dd31b
Patch
mobasi.ai / sentinel
Third Party Advisory
vulncheck.com / advisories/sleuth-kit-tsk-recover-path-traversal
Third Party Advisory