CVE-2005-1657

Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) deletemessage.ctml, (3) origmessage.ctml, or (4) readmessage.ctml, the Message.Id parameter to editmessage.ctml, or the (5) Message.Command parameter to messages.ctml.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

cpe:2.3:a:mercur:mercur_messaging:2005_sp2:*:*:*:*:*:*:*

Information

Published : 2005-05-17 21:00

Updated : 2008-09-05 13:49


NVD link : CVE-2005-1657

Mitre link : CVE-2005-1657


JSON object : View

Advertisement

dedicated server usa

Products Affected

mercur

  • mercur_messaging