Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2026-66140

Опубликовано: 24 июл. 2026
Источник: nvd
CVSS3: 8.4
EPSS Низкий

Описание

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

EPSS

Процентиль: 19%
0.00272
Низкий

8.4 High

CVSS3

Дефекты

CWE-24

Связанные уязвимости

CVSS3: 8.4
ubuntu
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

CVSS3: 8.4
redhat
8 дней назад

A flaw was found in Exim. This vulnerability allows an attacker to perform directory traversal by mishandling arguments related to queue-name. This could enable unauthorized access to files outside of the designated spool area, potentially leading to a gain of privileges.

CVSS3: 8.4
debian
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside ...

CVSS3: 8.4
github
8 дней назад

Exim before 4.99.5 allows directory traversal to access files outside of the spool area, and consequently gain privileges, because arguments related to queue-name are mishandled.

EPSS

Процентиль: 19%
0.00272
Низкий

8.4 High

CVSS3

Дефекты

CWE-24