CyberSec.Space Logo
Back to CVE Browser

CVE-2012-4940

MEDIUM
6.4
CVSS Severity Score
EPSS Score0.0800%
EPSS Percentile41.88th
PublishedOct 31, 2012
Last ModifiedApr 29, 2026

Vulnerability Description

Multiple directory traversal vulnerabilities in the View Log Files component in Axigen Free Mail Server allow remote attackers to read or delete arbitrary files via a .. (dot dot) in (1) the fileName parameter in a download action to source/loggin/page_log_dwn_file.hsp, or the fileName parameter in (2) an edit action or (3) a delete action to the default URI.

Affected Platforms (CPE)

πŸ“¦
Gecad

Axigen Free Mail Server

All versions

References & Advisories

Related Vulnerabilities