5
CVSSv2

CVE-2002-1004

Published: 04/10/2002 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and previous versions allows remote malicious users to read arbitrary files via .. (dot dot) sequences in a URL.

Vulnerable Product Search on Vulmon Subscribe to Product

argosoft argosoft mail server 1.8.1.5

Exploits

source: wwwsecurityfocuscom/bid/5144/info ArGoSoft Mail Server is an STMP, POP3 and Finger server for Microsoft Windows environments ArGoSoft has a built in web server to enable remote access to mail A directory traversal issue has been reported in the web server, which could allow remote users access to all files residing on the host ...