Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 stores sensitive information under the web root with insufficient access control, which allows remote attackers to determine the installation path, IP addresses, and error messages via direct requests to files under LOG/.
Metrics
Affected Vendors & Products
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
No history.

Status: PUBLISHED
Assigner: mitre
Published:
Updated: 2024-08-07T09:53:00.442Z
Reserved: 2008-08-20T00:00:00
Link: CVE-2008-3728

No data.

Status : Deferred
Published: 2008-08-20T16:41:00.000
Modified: 2025-04-09T00:30:58.490
Link: CVE-2008-3728

No data.

No data.