5
CVE-2004-2586
- EPSS 1.93%
- Veröffentlicht 31.12.2004 05:00:00
- Zuletzt bearbeitet 16.06.2026 22:09:55
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in frmGetAttachment.aspx in SmarterTools SmarterMail 1.6.1511 and 1.6.1529 allows remote attackers to read arbitrary files via the filename parameter.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
SmarterTools ≫ SmarterMail Version1.6.1511
SmarterTools ≫ SmarterMail Version1.6.1529
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 1.93% | 0.774 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 5 | 10 | 2.9 |
AV:N/AC:L/Au:N/C:P/I:N/A:N
|
http://members.lycos.co.uk/r34ct/main/smarter_mail%203.1/smarter_mail.txt
http://secunia.com/advisories/11042
http://www.zone-h.org/advisories/read/id=4098
http://securitytracker.com/id?1009307
https://exchange.xforce.ibmcloud.com/vulnerabilities/15389