Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons

Social Media

Hackers News Hackers News
  • CyberSecurity News
  • Threats
  • Attacks
  • Vulnerabilities
  • Breaches
  • Comparisons
Search the Site
Popular Searches:
technology Amazon AI
Recent Posts
Revolut Data Breach Exposes Customer Passports and Transaction Histories
September 13, 2026
Plesk Backup Manager Critical Flaw Lets Low-Privileged Users Gain Root Access
September 13, 2026
VLC Media Player Bugs Expose Users to Remote Code Execution
September 12, 2026
Home/CyberSecurity News/Critical GNU Wget2 Vulnerability Let Remote Attackers to Overwrite Sensitive Files
CyberSecurity News

Critical GNU Wget2 Vulnerability Let Remote Attackers to Overwrite Sensitive Files

A Critical GNU Wget2, a widely used command-line utility for web file downloads. `The flaw, tracked as CVE-2025-69194, allows remote attackers to overwrite arbitrary files on a victim’s system,...

David kimber
David kimber
January 5, 2026 2 Min Read
189 0

A Critical GNU Wget2, a widely used command-line utility for web file downloads.

`The flaw, tracked as CVE-2025-69194, allows remote attackers to overwrite arbitrary files on a victim’s system, potentially leading to data loss or complete system compromise.

The vulnerability stems from improper validation of file paths in Metalink documents processed by Wget2. Metalink is a format that describes download locations and file checksums.

Attackers can craft malicious Metalink files containing path traversal sequences that trick Wget2 into writing files to unintended locations on the filesystem.

When a user downloads and processes a weaponized Metalink document, the application fails to sanitize the file paths in the metadata correctly.

Field Details
CVE ID CVE-2025-69194
Severity Important / High
CVSS Score 8.8
Weakness CWE-22: Path Traversal

This allows an attacker to specify arbitrary locations where files should be written, limited only by the permissions of the user running wget2.

According to the Common Weakness Enumeration (CWE-22), this path traversal flaw can have multiple severe consequences.

Attackers may overwrite critical system files, programs, or libraries used for code execution. They could modify security configuration files to bypass authentication mechanisms or create backdoor accounts.

In some scenarios, attackers may read sensitive files by directing wget2 to copy them to accessible locations. Red Hat has classified this vulnerability as of Important severity.

Noting that while it requires user interaction to process the malicious Metalink file, exploitation can realistically lead to local code execution or data corruption.

The vulnerability can also cause denial-of-service attacks by corrupting or deleting essential system files. Currently, no complete mitigation is available that meets enterprise deployment standards.

Users should avoid processing Metalink files from untrusted sources and monitor for security updates from the GNU Wget2 project.

Organizations should assess their exposure and implement network-level controls to limit potential exploitation until patches become widely available.

Disclaimer: HackersRadar reports on cybersecurity threats and incidents for informational and awareness purposes only. We do not engage in hacking activities, data exfiltration, or the hosting or distribution of stolen or leaked information. All content is based on publicly available sources.

Tags:

AttackCVEExploitPatchSecurityVulnerability

Share Article

David kimber

David kimber

David is a penetration tester turned security journalist with expertise in mobile security, IoT vulnerabilities, and exploit development. As an OSCP-certified security professional, David brings hands-on technical experience to his reporting on vulnerabilities and security research. His articles often feature detailed technical analysis of exploits and provide actionable defense recommendations. David maintains an active presence in the security research community and has contributed to multiple open-source security tools.

Previous Post

Threat Group ‘Crimson Collective’ Allegedly Claim Breach of Largest Fiber Broadband Brightspeed

Next Post

Kimwolf Botnet Hacked 2 Million Devices and Turned User’s Internet Connection as Proxy Node

No Comment! Be the first one.

Leave a Reply Cancel reply

Your email address will not be published. Required fields are marked *

Popular Posts
CEO Impersonation Emails Target Employees for $50,000 Payments
September 11, 2026
KATARU IoT Malware Exploits Linux Privilege Escalation for Mirai-Style DDoS Attacks
September 11, 2026
Russia-Aligned Hackers Use GuardBreaker Prompt Injection to Disrupt AI Malware Analysis
September 11, 2026
Top Authors
David kimber
David kimber
Marcus Rodriguez
Marcus Rodriguez
Jennifer sherman
Jennifer sherman
Let's Connect
156k
2.25m
285k

Related Posts

Jennifer sherman
By Jennifer sherman
Threats

GlassWorm Attacks macOS via Malicious VS Code…

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Attacks

ClickFix Attack Hides Malicious Code via Stegan Security

January 1, 2026
Sarah simpson
By Sarah simpson
Vulnerabilities

MongoBleed Detector Tool Released to Detect MongoDB Vulnerability(CVE-2025-14847)

January 1, 2026
Emy Elsamnoudy
By Emy Elsamnoudy
Breaches

Conti Ransomware Gang Leaders & Infrastructure Exposed

January 1, 2026
Hackers News Hackers News
  • [email protected]

Quick Links

  • Contact Us
  • Privacy Policy
  • Terms of service

Categories

Attacks
Breaches
Comparisons
CyberSecurity News
Threats
Vulnerabilities

Let's keep in touch

receive fresh updates and breaking cyber news every day and week!

All Rights Reserved by HackersRadar ©2026

Follow Us