Exim Directory Traversal Vulnerability Enables Privilege Escalation Attacks
ID: 19ecb59c-acc0-5dc2-ac0e-8aaffd6700d3
STIX ID: report--19ecb59c-acc0-5dc2-ac0e-8aaffd6700d3
Feed Name: cybersecurityNews.com
Threat Score
A high-severity directory traversal vulnerability (EXIM-Security-2026-06-22.1 / GCVE-25-2026-07-45-1) affecting Exim 4.88 through 4.99.4 allows local attackers to manipulate queue-name command-line arguments to traverse outside the spool area and trigger privileged operations, enabling local privilege escalation; Exim 4.99.5 contains a fix to restrict sensitive CLI options and validate queue names, and administrators are advised to update immediately.
Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.
