iXmail 0.2/0.3 - 'iXmail_NetAttach.php' File Deletion



EKU-ID: 28312 CVE: OSVDB-53712 OSVDB-ID:
Author: leseulfrog Published: 2003-06-26 Verified: Verified
Download:

Rating

☆☆☆☆☆
Home


source: https://www.securityfocus.com/bid/8046/info

A vulnerability has been reported for iXmail that may allow for the deletion of files. The vulnerability occurs due to insufficient sanitization of user-supplied input for certain URI parameters.

http://www.example.com/ixmail_netattach.php?file=ixmail_netattach.php