CVE-2026-81849CWE-23

CVE-2026-81849

High · published August 29, 2026

CVSS v3.1
8.8
EPSS
1%
Percentile
44.8
In the wild
Unconfirmed
What it is

Improper limitation of a pathname to a restricted directory in the aws:downloadContent plugin in amazon-ssm-agent before 3.3.4515.0 might allow an authenticated remote user whose ssm:SendCommand permission is restricted to the AWS-DownloadContent document, to write arbitrary files outside the intended download directory with root privileges, via crafted object keys in the S3 source the document is directed to retrieve. This issue may lead to arbitrary code execution as root if specific sensitive files are overwritten.

To remediate this issue, customers should upgrade amazon-ssm-agent to version 3.3.4515.0 or later.

The record
Technical detail
CVSS v3.1
8.8 · HIGH
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H
CVSS v4.0
8.7 · CVSS:4.0/AV:N/AC:L/AT:N/PR:L/UI:N/VC:H/VI:H/VA:H/SC:N/SI:N/SA:N
EPSS
0.00566 · 44.8th percentile
Weakness
CWE-23 · Relative Path Traversal
Published
2026-08-29T00:20Z
References (2)
EPSS history
Timeline
  • 30 AUG 16:19Z
    EPSS moved — → 1%
    epss
  • 28 AUG 18:02Z
    Path traversal in the aws:downloadContent plugin in amazon-ssm-agent
    cvelistv5