header-logo
Suggest Exploit
vendor:
Alt-N WebAdmin
by:
5.5
CVSS
MEDIUM
Information Disclosure
200
CWE
Product Name: Alt-N WebAdmin
Affected Version From: Alt-N WebAdmin 3.3.3, U-Mail 9.8 for Windows, U-Mail GateWay 9.8 for Windows
Affected Version To:
Patch Exists: NO
Related CWE:
CPE:
Metasploit:
Other Scripts:
Platforms Tested:

Alt-N WebAdmin Remote Information Disclosure Vulnerability

Alt-N WebAdmin is prone to a remote information-disclosure vulnerability because it fails to properly sanitize user-supplied input. An attacker can exploit this vulnerability to view the source code of files in the context of the server process; this may aid in further attacks.

Mitigation:

To mitigate this vulnerability, it is recommended to apply the latest security patches provided by the vendor.
Source

Exploit-DB raw data:

source: https://www.securityfocus.com/bid/45476/info

Alt-N WebAdmin is prone to a remote information-disclosure vulnerability because it fails to properly sanitize user-supplied input.

An attacker can exploit this vulnerability to view the source code of files in the context of the server process; this may aid in further attacks.

The following versions are affected:

Alt-N WebAdmin 3.3.3
U-Mail 9.8 for Windows
U-Mail GateWay 9.8 for Windows 

http://www.example.com/login.wdm%20
http://www.example.com/login.wdm%2e