CVE-2006-4013

CWE-22Path Traversal3 documents3 sources
Severity
7.6HIGH
EPSS
0.7%
top 28.48%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 7
Latest updateMay 1

Description

Multiple directory traversal vulnerabilities in Symantec Brightmail AntiSpam (SBAS) before 6.0.4, when the Control Center is allowed to connect from any computer, allow remote attackers to read and overwrite certain files via directory traversal sequences in (1) DATABLOB-GET and (2) DATABLOB-SAVE requests.

CVSS vector

AV:N/AC:H/C:C/I:C/A:CExploitability: 4.9 | Impact: 10.0

Affected Packages1 packages

Patches

🔴Vulnerability Details

2
GHSA
GHSA-m933-mr3p-5cx6: Multiple directory traversal vulnerabilities in Symantec Brightmail AntiSpam (SBAS) before 62022-05-01
CVEList
CVE-2006-4013: Multiple directory traversal vulnerabilities in Symantec Brightmail AntiSpam (SBAS) before 62006-08-07