CVE-2021-40525
published 2022-01-04CVE-2021-40525: Apache James ManagedSieve implementation alongside with the file storage for sieve scripts is vulnerable to path traversal, allowing reading and writing any…
PriorityP354critical9.1CVSS 3.1
AVNACLPRNUINSUCHIHAN
EPSS
3.71%
88.5th percentile
Apache James ManagedSieve implementation alongside with the file storage for sieve scripts is vulnerable to path traversal, allowing reading and writing any file. This vulnerability had been patched in Apache James 3.6.1 and higher. We recommend the upgrade. Distributed and Cassandra based products are also not impacted.
Affected
3 ranges
| Vendor | Product | Version range | Fixed in |
|---|---|---|---|
| apache | james | < 3.6.2 | 3.6.2 |
| apache | james | — | — |
| apache_software_foundation | apache_james | — | — |
CVSS provenance
nvdv3.19.1CRITICALCVSS:3.1/AV:N/AC:L/PR:N/UI:N/S:U/C:H/I:H/A:N
nvdv2.06.4MEDIUMAV:N/AC:L/Au:N/C:P/I:P/A:N
ghsa9.1CRITICAL
osv9.1CRITICAL
Stop checking back — get the weekly exploitation signal.
Every Monday: what got weaponized or added to CISA KEV in the last seven days — each CVE cross-linked to its PoC, Nuclei template, and detection rule. Free, one email a week, unsubscribe in one click.
GHSA
Path Traversal in Apache James Server
ghsa·2022-02-08·CVSS 9.1
CVE-2022-22931 [CRITICAL] CWE-22 Path Traversal in Apache James Server
Path Traversal in Apache James Server
Apache James Server prior to version 3.6.2 contains a path traversal vulnerability. The fix for CVE-2021-40525 does not prepend delimiters upon valid directory validations. Affected implementations include: - maildir mailbox store - Sieve file repository This enables a user to access other users data stores (limited to user names being prefixed by the value of the username being used).
OSV
Path Traversal in Apache James Server
osv·2022-02-08·CVSS 9.1
CVE-2022-22931 [CRITICAL] Path Traversal in Apache James Server
Path Traversal in Apache James Server
Apache James Server prior to version 3.6.2 contains a path traversal vulnerability. The fix for CVE-2021-40525 does not prepend delimiters upon valid directory validations. Affected implementations include: - maildir mailbox store - Sieve file repository This enables a user to access other users data stores (limited to user names being prefixed by the value of the username being used).
OSV
Path traversal in Apache James
osv·2022-01-21
CVE-2021-40525 [CRITICAL] Path traversal in Apache James
Path traversal in Apache James
Apache James ManagedSieve implementation alongside with the file storage for sieve scripts is vulnerable to path traversal, allowing reading and writing any file. This vulnerability had been patched in Apache James 3.6.1 and higher. We recommend the upgrade. Distributed and Cassandra based products are also not impacted.
GHSA
Path traversal in Apache James
ghsa·2022-01-21
CVE-2021-40525 [CRITICAL] CWE-22 Path traversal in Apache James
Path traversal in Apache James
Apache James ManagedSieve implementation alongside with the file storage for sieve scripts is vulnerable to path traversal, allowing reading and writing any file. This vulnerability had been patched in Apache James 3.6.1 and higher. We recommend the upgrade. Distributed and Cassandra based products are also not impacted.
No detection rules found.
No public exploits indexed.
No writeups or analysis indexed.
http://www.openwall.com/lists/oss-security/2022/01/04/4http://www.openwall.com/lists/oss-security/2022/02/07/1https://www.openwall.com/lists/oss-security/2022/01/04/4http://www.openwall.com/lists/oss-security/2022/01/04/4http://www.openwall.com/lists/oss-security/2022/02/07/1https://www.openwall.com/lists/oss-security/2022/01/04/4
2022-01-04
Published