Sieve file storage vulnerable to path traversal attacks
CVE-2021-40525

9.1CRITICAL

Key Information:

Vendor
Apache
Vendor
CVE Published:
4 January 2022

Summary

Apache James ManagedSieve implementation alongside with the file storage for sieve scripts is vulnerable to path traversal, allowing reading and writing any file. This vulnerability had been patched in Apache James 3.6.1 and higher. We recommend the upgrade. Distributed and Cassandra based products are also not impacted.

Affected Version(s)

Apache James Apache James <= 3.6.0

References

CVSS V3.1

Score:
9.1
Severity:
CRITICAL
Confidentiality:
High
Integrity:
High
Availability:
High
Attack Vector:
Network
Attack Complexity:
Low
Privileges Required:
None
User Interaction:
None
Scope:
Unchanged

Timeline

  • Vulnerability published

  • Vulnerability Reserved

Credit

The Apache James PMC would like to thanks Benoit TELLIER for the report.
.