CVE Vulnerabilities

CVE-2002-1581

Published: Dec 06, 2004 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view arbitrary files via .. (dot dot) sequences and a null byte (%00) in the configLanguage parameter.

Affected Software

NameVendorStart VersionEnd Version
Mailreader.comMailreader.com2.3.20 (including)2.3.20 (including)
Mailreader.comMailreader.com2.3.21 (including)2.3.21 (including)
Mailreader.comMailreader.com2.3.22 (including)2.3.22 (including)
Mailreader.comMailreader.com2.3.23 (including)2.3.23 (including)
Mailreader.comMailreader.com2.3.24 (including)2.3.24 (including)
Mailreader.comMailreader.com2.3.25 (including)2.3.25 (including)
Mailreader.comMailreader.com2.3.26 (including)2.3.26 (including)
Mailreader.comMailreader.com2.3.27 (including)2.3.27 (including)
Mailreader.comMailreader.com2.3.28 (including)2.3.28 (including)
Mailreader.comMailreader.com2.3.29 (including)2.3.29 (including)
Mailreader.comMailreader.com2.3.30 (including)2.3.30 (including)
Mailreader.comMailreader.com2.3.31 (including)2.3.31 (including)
MailreaderUbuntudapper*
MailreaderUbuntudevel*
MailreaderUbuntuedgy*
MailreaderUbuntufeisty*

References