Auto Generated CVE annotations [Mon Nov 15 15:49:39 UTC 2021] 🤖

patch-1
GitHub Action 2021-11-15 15:49:39 +00:00
parent 0f5ae5efba
commit 8f0c36f036
1 changed files with 1 additions and 0 deletions

View File

@ -6,6 +6,7 @@ info:
severity: high
reference: https://www.exploit-db.com/exploits/37996
tags: axigen,lfi
description: "Multiple directory traversal vulnerabilities in the View Log Files component in Axigen Free Mail Server allow remote attackers to read or delete arbitrary files via a .. (dot dot) in (1) the fileName parameter in a download action to source/loggin/page_log_dwn_file.hsp, or the fileName parameter in (2) an edit action or (3) a delete action to the default URI."
requests:
- method: GET