IlohaMail Arbitrary File Attachment...

- AV AC AU C I A
发布: 2003-01-28
修订: 2025-04-13

Vulnerable versions of IlohaMail do not sufficiently check the upload path for file attachments when a message is composed. As a result, a malicious user of the webmail system may be able to place a file on the host in any location which is writeable by the webserver process. It is also possible that local files may be overwritten by the malicious file attachment.

0%
暂无可用Exp或PoC
当前有0条受影响产品信息