accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote attackers to create text files with arbitrary content via the accountid parameter.
References
Link | Resource |
---|---|
http://www.securityfocus.com/bid/11371 | Patch Vendor Advisory |
http://secunia.com/advisories/12789 | Exploit Patch Vendor Advisory |
http://marc.info/?l=bugtraq&m=109483971420067&w=2 | |
https://exchange.xforce.ibmcloud.com/vulnerabilities/17317 |
Configurations
Configuration 1 (hide)
|
Information
Published : 2004-10-11 21:00
Updated : 2017-07-10 18:31
NVD link : CVE-2004-1673
Mitre link : CVE-2004-1673
JSON object : View
CWE
Products Affected
icewarp
- web_mail