VulnerabilityModified
CVE-2011-2468
Directory traversal vulnerability in the web interface in AnyMacro Mail System G4X allows remote attackers to read arbitrary files via directory traversal sequences in a request.
MEDIUM 5.0EPSS 1.90%
Does this matter?
Lower severity and a low EPSS score (1.90%). Track it; it rarely justifies an emergency change on its own.
Description
Directory traversal vulnerability in the web interface in AnyMacro Mail System G4X allows remote attackers to read arbitrary files via directory traversal sequences in a request.
- CVSS 2.0
- 5.0 MEDIUMAV:N/AC:L/Au:N/C:P/I:N/A:N
- EPSS
- 1.90% probability · 78th percentile
- CISA KEV
- Not listed
- Weakness
- CWE-22
- Affected
- anymacro/anymacro mail system
- Source
- cve@mitre.org
References
- http://secunia.com/advisories/44810Vendor Advisory
- http://www.cnvd.org.cn/vulnerability/CNVD-2011-05282
- http://www.kb.cert.org/vuls/id/603590US Government Resource
- http://www.securityfocus.com/bid/48063
- http://secunia.com/advisories/44810Vendor Advisory
- http://www.cnvd.org.cn/vulnerability/CNVD-2011-05282
- http://www.kb.cert.org/vuls/id/603590US Government Resource
- http://www.securityfocus.com/bid/48063
Source: NVD record, EPSS from FIRST.org, KEV from CISA. Refreshed daily.