Directory traversal vulnerability in admin/main.php in AMAX Magic Winmail Server 4.2 (build 0824) and previous versions allows remote malicious users to overwrite arbitrary files with session information via the sid parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
amax information technologies magic winmail server |