6.4
CVSSv2

CVE-2000-0780

Published: 20/10/2000 Updated: 18/10/2016
CVSS v2 Base Score: 6.4 | Impact Score: 4.9 | Exploitability Score: 10
VMScore: 645
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:N

Vulnerability Summary

The web server in IPSWITCH IMail 6.04 and previous versions allows remote malicious users to read and delete arbitrary files via a .. (dot dot) attack.

Vulnerable Product Search on Vulmon Subscribe to Product

ipswitch imail 5.0

ipswitch imail 6.0

ipswitch imail 6.1

ipswitch imail 6.2

ipswitch imail 6.3

ipswitch imail 6.4

Exploits

source: wwwsecurityfocuscom/bid/1617/info IPSWITCH ships a product titled IMail, an email server for usage on NT servers serving clients their mail via a web interface To this end the IMail server provides a web server typically running on port 8383 for it's end users to access Via this interface users may read and send mail, as well as ...