5
CVSSv2

CVE-2004-1102

Published: 10/01/2005 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

MailPost 5.1.1sv, and possibly earlier versions, displays a different error message depending on whether the requested file exists or not, which allows remote malicious users to gain sensitive information.

Vulnerable Product Search on Vulmon Subscribe to Product

tips mailpost 5.1.1_sv

Exploits

source: wwwsecurityfocuscom/bid/11599/info TIPS MailPost is affected by a remote file enumeration vulnerability This issue is due to a failure to properly sanitize user requests An attacker may leverage this issue to gain knowledge of the existence of files outside the Web root directory Information disclosed in this way may facilitat ...