8.5
CVSSv2

CVE-2012-4991

Published: 13/12/2012 Updated: 13/12/2012
CVSS v2 Base Score: 8.5 | Impact Score: 9.2 | Exploitability Score: 8
VMScore: 855
Vector: AV:N/AC:L/Au:S/C:C/I:C/A:N

Vulnerability Summary

Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and previous versions allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI.

Vulnerable Product Search on Vulmon Subscribe to Product

axway securetransport

Exploits

Secure Transport Path Traversal Vulnerability Public Disclosure Date: November 11, 2012 Vendors Affected: Axway wwwaxwaycom Systems Affected: Secure Transport Problem: A path traversal vulnerability was identified in SecureTransport versions 51 SP2 and earlier on the Microsoft Windows platform that could allow tampering and informatio ...
Axway suffers from a directory traversal vulnerability ...