Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-5qxf-w5v2-m3rg

Опубликовано: 24 июл. 2026
Источник: github
Github: Не прошло ревью
CVSS3: 8.4

Описание

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

EPSS

Процентиль: 19%
0.00272
Низкий

8.4 High

CVSS3

Дефекты

CWE-24

Связанные уязвимости

CVSS3: 8.4
ubuntu
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

CVSS3: 8.4
redhat
8 дней назад

A flaw was found in Exim. This vulnerability allows an attacker to perform directory traversal by mishandling arguments related to queue-name. This could enable unauthorized access to files outside of the designated spool area, potentially leading to a gain of privileges.

CVSS3: 8.4
nvd
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

CVSS3: 8.4
debian
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside ...

EPSS

Процентиль: 19%
0.00272
Низкий

8.4 High

CVSS3

Дефекты

CWE-24