Back to search
CVE-2010-5334
Published: Oct 11, 2019
Modified: Aug 7, 2024
PUBLISHED
Description
IceWarp Webclient before 10.2.1 has a directory traversal vulnerability. This can result in loss of confidential data of IceWarp Mailserver and the operating system. Input passed via a certain parameter (_c to basic/index.html) is not properly sanitised and can therefore be exploited to browse the partition where IceWarp is installed (or the whole system) and read arbitrary files.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
https://vuldb.com/?id.142994
x_refsource_MISC
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now