5
CVSSv2

CVE-2006-0893

Published: 25/02/2006 Updated: 05/09/2008
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 445
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

NOCC Webmail 1.0 allows remote malicious users to obtain sensitive information via a direct request to (1) the profiles directory, which leaks e-mail addresses contained in filenames of profiles, and (2) the tmp directory, which lists names of uploaded attachments.

Vulnerable Product Search on Vulmon Subscribe to Product

nocc nocc 1.0