Multiple directory traversal vulnerabilities in (1) EPSTIMAP4S.EXE and (2) SPA-IMAP4S.EXE in the IMAP service in E-Post Mail 4.05 and SPA-PRO Mail 4.05 allow remote attackers to (a) list arbitrary directories or cause a denial of service via the LIST command; or create arbitrary files via the (b) APPEND, (c) COPY, or (d) RENAME commands.
Metrics
Affected Vendors & Products
References
History
No history.
MITRE
Status: PUBLISHED
Assigner: mitre
Published: 2006-01-27T00:00:00
Updated: 2024-08-07T16:34:14.800Z
Reserved: 2006-01-26T00:00:00
Link: CVE-2006-0448
Vulnrichment
No data.
NVD
Status : Modified
Published: 2006-01-27T00:03:00.000
Modified: 2024-11-21T00:06:29.327
Link: CVE-2006-0448
Redhat
No data.