CVE Vulnerabilities

CVE-2001-1285

Published: Oct 12, 2001 | Modified: Sep 10, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in readmail.cgi for Ipswitch IMail 7.04 and earlier allows remote attackers to access the mailboxes of other users via a .. (dot dot) in the mbx parameter.

Affected Software

Name Vendor Start Version End Version
Imail Ipswitch 6.0.2 (including) 6.0.2 (including)
Imail Ipswitch 6.0.6 (including) 6.0.6 (including)
Imail Ipswitch 7.0.4 (including) 7.0.4 (including)

References