vendor:
MDaemon
by:
Kingcope
7,5
CVSS
HIGH
Remote File Disclosure
22
CWE
Product Name: MDaemon
Affected Version From: 11.0.1
Affected Version To: 11.0.1
Patch Exists: NO
Related CWE: N/A
CPE: a:alt-n_technologies:mdaemon
Metasploit:
N/A
Other Scripts:
N/A
Tags: N/A
CVSS Metrics: N/A
Nuclei References:
N/A
Nuclei Metadata: N/A
Platforms Tested: N/A
2010
MDaemon Mailer Daemon Version 11.0.1 (LATEST) Remote File Disclosure
The latest version at the time of this advisory is vulnerble to the attack. It seems all files which the SYSTEM account can read can be accessed remotely, even accessing files on SMB shares located in the local network might be possible. The caveat is that only human readable files can be read. When subscribing to a mailing list the user sends an E-Mail with a subject like: SUBSCRIBE test-mailinglist@<domainhere>. An attacker can now supply dot dot slashes here to point to a different file as intended.
Mitigation:
Ensure that the system is configured to prevent directory traversal attacks.