3.6
CVE-2005-1902
- EPSS 3.55%
- Veröffentlicht 09.06.2005 04:00:00
- Zuletzt bearbeitet 16.06.2026 22:13:53
- Quelle cve@mitre.org
- CVE-Watchlists
- Unerledigt
Directory traversal vulnerability in the IMAP service for SPA-PRO Mail @Solomon 4.00 allows remote authenticated users to read other users' mail and perform operations on arbitrary directories via .. sequences in the (1) SELECT, (2) CREATE, (3) DELETE, and (4) RENAME commands.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
E-post Corporation ≫ Spa-pro Mail Atsolomon Version4.00
| Typ | Quelle | Score | Percentile |
|---|---|---|---|
| EPSS | FIRST.org | 3.55% | 0.878 |
| Quelle | Base Score | Exploit Score | Impact Score | Vector String |
|---|---|---|---|---|
| nvd@nist.gov | 3.6 | 3.9 | 4.9 |
AV:L/AC:L/Au:N/C:P/I:P/A:N
|
http://secunia.com/advisories/15573
http://securitytracker.com/id?1014095
http://www.security.org.sg/vuln/spa-promail4.html
http://www.vupen.com/english/advisories/2005/0680
http://www.osvdb.org/16989
https://exchange.xforce.ibmcloud.com/vulnerabilities/20860