← Voltar para CVEs
CVE-2005-0845
N/ADescricao
Directory traversal vulnerability in the Webmail interface in SurgeMail 2.2g3 allows remote authenticated users to write arbitrary files or directories via a .. (dot dot) in the attach_id parameter.
Detalhes CVE
Pontuacao CVSS v3.1N/A
Publicado5/2/2005
Ultima modificacao4/16/2026
Fontenvd
Avistamentos honeypot0
Produtos afetados
netwin:surgemail
Referencias
http://marc.info/?l=bugtraq&m=111159967417903&w=2(cve@mitre.org)
http://netwinsite.com/cgi/dnewsweb.cgi?cmd=article&group=netwin.surgemail&item=8814&utag=(cve@mitre.org)
http://secunia.com/advisories/14658(cve@mitre.org)
http://www.security.org.sg/vuln/surgemail22g3.html(cve@mitre.org)
http://marc.info/?l=bugtraq&m=111159967417903&w=2(af854a3a-2127-422b-91ae-364da2661108)
http://netwinsite.com/cgi/dnewsweb.cgi?cmd=article&group=netwin.surgemail&item=8814&utag=(af854a3a-2127-422b-91ae-364da2661108)
http://secunia.com/advisories/14658(af854a3a-2127-422b-91ae-364da2661108)
http://www.security.org.sg/vuln/surgemail22g3.html(af854a3a-2127-422b-91ae-364da2661108)
Correlacoes IOC
Sem correlacoes registradas
This product uses data from the NVD API but is not endorsed or certified by the NVD.