emumail.cgi in EMU Webmail 5.0 allows remote malicious users to determine the full pathname for emumail.cgi via a malformed string containing script, which generates a regular expression matching error that includes the pathname in the resulting error message.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
emumail emu webmail 5.0 |