CVE-2014-5359: Safenet-Inc Safenet Authentication Service Outlook Web Access Agent
High severity, CVSS 7.8. EPSS: 3.8% chance of exploitation in the next 30 days.
Directory traversal vulnerability in SafeNet Authentication Service (SAS) Outlook Web Access Agent (formerly CRYPTOCard) before 1.03.30109 allows remote attackers to read arbitrary files via a .. (dot dot) in the GetFile parameter to owa/owa.
Affected products
- Safenet-Inc Safenet Authentication Service Outlook Web Access Agent: up to and including 1.03.20212
Published 2014-12-16. Last modified 2026-06-17.