PT-2022-15740 · Apache · Apache James Server

Jaroslav Lobačevski

·

Published

2022-02-07

·

Updated

2022-02-15

·

CVE-2022-22931

CVSS v3.1

4.3

Medium

VectorAV:N/AC:L/PR:L/UI:N/S:U/C:L/I:N/A:N
Name of the Vulnerable Software and Affected Versions Apache James Server versions prior to 3.6.2
Description The issue enables a user to access other users' data stores, limited to user names being prefixed by the value of the username being used. This is due to a path traversal vulnerability where the fix does not prepend delimiters upon valid directory validations. Affected implementations include the maildir mailbox store and the Sieve file repository.
Recommendations For versions prior to 3.6.2, update to version 3.6.2 or later to resolve the issue. As a temporary workaround, consider restricting access to the maildir mailbox store and the Sieve file repository to minimize the risk of exploitation. Avoid using usernames that could be prefixed by other usernames to limit the potential for data access by other users.

Fix

Path traversal

Found an issue in the description? Have something to add? Feel free to write us 👾

Weakness Enumeration

Related Identifiers

CVE-2022-22931
GHSA-V84G-CF5J-XJQX

Affected Products

Apache James Server