5
CVSSv2

CVE-2004-2385

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

EMU Webmail 5.2.7 allows remote malicious users to obtain sensitive path information (home directory) via an HTTP request for init.emu.

Vulnerable Product Search on Vulmon Subscribe to Product

emumail emu webmail 5.2.7

Exploits

source: wwwsecurityfocuscom/bid/9861/info Multiple vulnerabilities have been identified in the application that may allow an attacker to carry out cross-site scripting attacks and disclose the path to the victim's home directory The issues are reported to exist in the login script, 'emumailfcgi' script and the 'initemu' sample script ...