CVE-2012-4991: Axway Securetransport

High severity, CVSS 8.5. EPSS: 4.6% chance of exploitation in the next 30 days.

Multiple directory traversal vulnerabilities in Axway SecureTransport 5.1 SP2 and earlier allow remote authenticated users to (1) read, (2) delete, or (3) create files, or (4) list directories, via a ..%5C (encoded dot dot backslash) in a URI.

Affected products

  • Axway Securetransport: up to and including 5.1

Published 2012-12-13. Last modified 2026-06-16.