PT-2012-5504 · Mcafee · Mcafee Email Gateway
Published
2012-08-22
·
Updated
2013-04-11
·
CVE-2012-4596
CVSS v2.0
4.3
Medium
| Vector | AV:N/AC:M/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
McAfee Email Gateway versions 7.0.0 through 7.0.1
Description
A directory traversal issue allows remote authenticated users to bypass access restrictions and download arbitrary files via a crafted URL.
Recommendations
For versions 7.0.0 and 7.0.1, update to a version that contains a fix for this issue to prevent remote authenticated users from downloading arbitrary files.
Fix
Path traversal
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Mcafee Email Gateway