CVE-2025-40605
Severity CVSS v4.0:
Pending analysis
Type:
CWE-23
Relative Path Traversal
Publication date:
20/11/2025
Last modified:
21/11/2025
Description
A Path Traversal vulnerability has been identified in the Email Security appliance allows an attacker to manipulate file system paths by injecting crafted directory-traversal sequences (such as ../) and may access files and directories outside the intended restricted path.
Impact
Base Score 3.x
5.30
Severity 3.x
MEDIUM



