The (1) function.php or (2) function.view.php scripts in Merak Mail Server 5.2.7 allow remote malicious users to read arbitrary PHP files via a direct HTTP request to port 32000.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
merak mail server 5.2.7 |