5
CVSSv2

CVE-2010-3460

Published: 17/09/2010 Updated: 17/08/2017
CVSS v2 Base Score: 5 | Impact Score: 2.9 | Exploitability Score: 10
VMScore: 505
Vector: AV:N/AC:L/Au:N/C:P/I:N/A:N

Vulnerability Summary

Directory traversal vulnerability in the HTTP interface in AXIGEN Mail Server 7.4.1 for Windows allows remote malicious users to read arbitrary files via a %5C (encoded backslash) in the URL.

Vulnerable Product Search on Vulmon Subscribe to Product

gecad axigen mail server

gecad axigen mail server -

gecad axigen mail server 1.0.1

gecad axigen mail server 1.0.2

gecad axigen mail server 1.0.5

gecad axigen mail server 1.0.6

gecad axigen mail server 1.0.7

gecad axigen mail server 1.1.0

gecad axigen mail server 1.1.1

gecad axigen mail server 1.2.0

gecad axigen mail server 1.2.3

gecad axigen mail server 1.2.4

gecad axigen mail server 1.2.5

gecad axigen mail server 1.2.6

gecad axigen mail server 2.0

gecad axigen mail server 2.0.3

gecad axigen mail server 2.0.4

gecad axigen mail server 2.0.5

gecad axigen mail server 3.0

gecad axigen mail server 3.0.1

gecad axigen mail server 4.0

gecad axigen mail server 4.0.1

gecad axigen mail server 4.0.2

gecad axigen mail server 5.0

gecad axigen mail server 5.0.1

gecad axigen mail server 5.0.2

gecad axigen mail server 5.0.3

gecad axigen mail server 6.0.1

gecad axigen mail server 6.1

gecad axigen mail server 6.2

gecad axigen mail server 6.2.2

gecad axigen mail server 7.0

gecad axigen mail server 7.1

gecad axigen mail server 7.1.1

gecad axigen mail server 7.1.2

gecad axigen mail server 7.1.3

gecad axigen mail server 7.1.4

gecad axigen mail server 7.2

gecad axigen mail server 7.2.1

gecad axigen mail server 7.3

gecad axigen mail server 7.3.1

gecad axigen mail server 7.3.2

gecad axigen mail server 7.3.3

gecad axigen mail server 7.4

Exploits

source: wwwsecurityfocuscom/bid/43230/info Axigen Webmail is prone to a directory-traversal vulnerability because it fails to sufficiently sanitize user-supplied input Exploiting this issue may allow an attacker to obtain sensitive information that could aid in further attacks Axigen Webmail 741 is vulnerable; other versions may be ...