CVE Vulnerabilities

CVE-2002-1581

Published: Dec 06, 2004 | Modified: Mar 08, 2011
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu

Directory traversal vulnerability in nph-mr.cgi in Mailreader.com 2.3.20 through 2.3.31 allows remote attackers to view arbitrary files via .. (dot dot) sequences and a null byte (%00) in the configLanguage parameter.

Affected Software

Name Vendor Start Version End Version
Mailreader.com Mailreader.com 2.3.20 (including) 2.3.20 (including)
Mailreader.com Mailreader.com 2.3.21 (including) 2.3.21 (including)
Mailreader.com Mailreader.com 2.3.22 (including) 2.3.22 (including)
Mailreader.com Mailreader.com 2.3.23 (including) 2.3.23 (including)
Mailreader.com Mailreader.com 2.3.24 (including) 2.3.24 (including)
Mailreader.com Mailreader.com 2.3.25 (including) 2.3.25 (including)
Mailreader.com Mailreader.com 2.3.26 (including) 2.3.26 (including)
Mailreader.com Mailreader.com 2.3.27 (including) 2.3.27 (including)
Mailreader.com Mailreader.com 2.3.28 (including) 2.3.28 (including)
Mailreader.com Mailreader.com 2.3.29 (including) 2.3.29 (including)
Mailreader.com Mailreader.com 2.3.30 (including) 2.3.30 (including)
Mailreader.com Mailreader.com 2.3.31 (including) 2.3.31 (including)

References