vendor:
Mail Server
by:
Team N.finity
7.5
CVSS
HIGH
Directory Traversal
22
CWE
Product Name: Mail Server
Affected Version From: 1.8.1.5
Affected Version To: Earlier versions
Patch Exists: YES
Related CWE: N/A
CPE: a:argosoft:mail_server
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: Windows
2002
ArGoSoft Mail Server Directory Traversal Vulnerability
A directory traversal issue has been reported in the web server of ArGoSoft Mail Server, which could allow remote users access to all files residing on the host. This is accomplished by submitting a specially crafted request containing '/..' character sequences to a specific directory.
Mitigation:
Upgrade to the latest version of ArGoSoft Mail Server