CVE-2012-6452: Axway Email Firewall

Medium severity, CVSS 5.0. EPSS: 1.5% chance of exploitation in the next 30 days.

Axway Secure Messenger before 6.5 Updated Release 7, as used in Axway Email Firewall, provides different responses to authentication requests depending on whether the user exists, which allows remote attackers to enumerate users via a series of requests.

Affected products

  • Axway Email Firewall: affected versions not specified
  • Axway Secure Messenger: up to and including 6.5.0; version 6.3.2 only

Published 2014-05-27. Last modified 2026-06-16.