CVE-2012-4991

Axway SecureTransport <5.1 SP2 - Path Traversal

Title source: llm
STIX 2.1

Description

Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and earlier allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI.

Exploits (1)

exploitdb WRITEUP
by Sebastian Perez · textwebappswindows
https://www.exploit-db.com/exploits/23324

References (1)

Core 1
Core References
Exploit, Third Party Advisory exploit x_refsource_exploit-db
http://www.exploit-db.com/exploits/23324/

Scores

EPSS 0.0436
EPSS Percentile 89.0%

Details

CWE
CWE-22
Status published
Products (1)
axway/securetransport < 5.1
Published Dec 13, 2012
Tracked Since Feb 18, 2026