← Back

CVE-2025-59689

nvd nist
Published: Sep 19, 2025Modified: Jun 17, 2026CISA KEV

JSON object

Loading...
6.1
Vector
CVSS:3.1/AV:N/AC:L/PR:N/UI:R/S:C/C:L/I:L/A:N
Exploitability: 2.8 / Impact: 2.7
Source: MITRE (Secondary)

Description

Libraesva ESG 4.5 through 5.5.x before 5.5.7 allows command injection via a compressed e-mail attachment. For ESG 5.0 a fix has been released in 5.0.31. For ESG 5.1 a fix has been released in 5.1.20. For ESG 5.2 a fix has been released in 5.2.31. For ESG 5.4 a fix has been released in 5.4.8. For ESG 5.5. a fix has been released in 5.5.7.

Affected (6)

1 product
Email Security Gateway
Configuration A
6 vulnerable
Vulnerable SoftwareAffected Versions
Libraesva
From 4.5 to 5.0.31
From 5.1.0 to 5.1.20
From 5.2.0 to 5.2.31
From 5.3.0 to 5.3.16
From 5.4.0 to 5.4.8
From 5.5.0 to 5.5.7

Timeline

No history available yet.