Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET allows remote malicious users to read arbitrary files via a .. (dot dot) in the temp_filename parameter.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
afterlogic mailbee webmail pro 4.1 |