logo

Exim Directory Traversal Vulnerability Enables Privilege Escalation Attacks

ID: 19ecb59c-acc0-5dc2-ac0e-8aaffd6700d3

STIX ID: report--19ecb59c-acc0-5dc2-ac0e-8aaffd6700d3

Feed Name: cybersecurityNews.com

Threat Score
75/100

Date Published: 2026-07-23

Date Updated: 2026-07-24

Author: Abinaya

...
...

A high-severity directory traversal vulnerability (EXIM-Security-2026-06-22.1 / GCVE-25-2026-07-45-1) affecting Exim 4.88 through 4.99.4 allows local attackers to manipulate queue-name command-line arguments to traverse outside the spool area and trigger privileged operations, enabling local privilege escalation; Exim 4.99.5 contains a fix to restrict sensitive CLI options and validate queue names, and administrators are advised to update immediately.

Your team is not currently subscribed to this feed. You must subscribe to it in order to see this post.