Vulnerabilities (CVE)

Join the Common Vulnerabilities and Exposures (CVE) community and start to get notified about new vulnerabilities.

Filtered by vendor Comingchina Subscribe
Filtered by product U-mail Webmail Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4932 1 Comingchina 1 U-mail Webmail Server 2018-10-11 9.0 HIGH N/A
webmail/modules/filesystem/edit.php in U-Mail Webmail server 4.91 allows remote attackers to overwrite arbitrary files via an absolute pathname in the path parameter and arbitrary content in the content parameter. NOTE: this can be leveraged for code execution by writing to a file under the web document root.