7.5
CVE-2004-1672
- EPSS 1.75%
- Veröffentlicht 12.10.2004 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:08:10
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to view other users' attachments by specifying the username and message ID in an HTTP request.
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.75% | 0.749 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 7.5 | 10 | 6.4 |
AV:N/AC:L/Au:N/C:P/I:P/A:P
|
http://marc.info/?l=bugtraq&m=109483971420067&w=2
http://secunia.com/advisories/12789
http://www.securityfocus.com/bid/11371
https://exchange.xforce.ibmcloud.com/vulnerabilities/17316