CVE Vulnerabilities

CVE-2002-1581

Published: Dec 06, 2004 | Modified: Nov 20, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
UNTRIAGED

Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view arbitrary files via .. (dot dot) sequences and a null byte (%00) in the configLanguage parameter.

Affected Software

Name Vendor Start Version End Version
Mailreader.com Mailreader.com 2.3.20 (including) 2.3.20 (including)
Mailreader.com Mailreader.com 2.3.21 (including) 2.3.21 (including)
Mailreader.com Mailreader.com 2.3.22 (including) 2.3.22 (including)
Mailreader.com Mailreader.com 2.3.23 (including) 2.3.23 (including)
Mailreader.com Mailreader.com 2.3.24 (including) 2.3.24 (including)
Mailreader.com Mailreader.com 2.3.25 (including) 2.3.25 (including)
Mailreader.com Mailreader.com 2.3.26 (including) 2.3.26 (including)
Mailreader.com Mailreader.com 2.3.27 (including) 2.3.27 (including)
Mailreader.com Mailreader.com 2.3.28 (including) 2.3.28 (including)
Mailreader.com Mailreader.com 2.3.29 (including) 2.3.29 (including)
Mailreader.com Mailreader.com 2.3.30 (including) 2.3.30 (including)
Mailreader.com Mailreader.com 2.3.31 (including) 2.3.31 (including)
Mailreader Ubuntu dapper *
Mailreader Ubuntu devel *
Mailreader Ubuntu edgy *
Mailreader Ubuntu feisty *

References