EMU Webmail allows local users to execute arbitrary programs via a .. (dot dot) in the HTTP Host header that points to a Trojan horse configuration file that contains a pageroot specifier that contains shell metacharacters.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
emumail emumail 3.0 |
||
emumail emumail red hat linux 5.1 |
||
emumail emumail unix 5.0 |
||
emumail emumail unix 5.1 |
||
emumail emumail red hat linux 5.0 |