CVE-2012-1920 Information

Description

@Mail WebMail Client in AtMail Open-Source 1.04 and earlier allows remote attackers to obtain configuration information via a direct request to install/info.php which calls the phpinfo function.

Reference

http://en.securitylab.ru/lab/PT-2011-48 http://secunia.com/advisories/47012 http://www.kb.cert.org/vuls/id/743555 https://exchange.xforce.ibmcloud.com/vulnerabilities/74282

Share on: