CVE-2002-1004 Information

Description

Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.

Reference

http://archives.neohapsis.com/archives/bugtraq/2002-07/0029.html http://www.argosoft.com/applications/mailserver/changelist.asp http://www.iss.net/security_center/static/9477.php http://www.securityfocus.com/bid/5144

Share on: