High severity7.5NVD Advisory· Published Nov 17, 2021· Updated Jun 17, 2026
CVE-2021-40745
CVE-2021-40745
Description
Adobe Campaign version 21.2.1 (and earlier) is affected by a Path Traversal vulnerability that could lead to reading arbitrary server files. By leveraging an exposed XML file, an unauthenticated attacker can enumerate other files on the server.
Affected products
3cpe:2.3:a:adobe:campaign:*:*:*:*:*:*:*:*+ 2 more
- cpe:2.3:a:adobe:campaign:*:*:*:*:*:*:*:*range: <=21.2.1
- (no CPE)range: <=21.2.1
- (no CPE)range: unspecified
Patches
Vulnerability mechanics
References
1- helpx.adobe.com/security/products/campaign/apsb21-52.htmlnvdRelease NotesVendor Advisory
News mentions
0No linked articles in our index yet.