Directory traversal vulnerability exists in A.K.I Software's PMailServer/PMailServer2 products' CGIs included in Internal Simple Webserver. If this vulnerability is exploited, a remote attacker may access arbitrary files outside DocumentRoot.
Project Subscriptions
Advisories
No advisories yet.
Fixes
Solution
No solution given by the vendor.
Workaround
No workaround given by the vendor.
References
History
Tue, 18 Mar 2025 19:15:00 +0000
| Type | Values Removed | Values Added |
|---|---|---|
| First Time appeared |
Aki
Aki pmman.exe\/enterprise Edition\/ Aki pmman.exe\/pro Edition\/ Aki pmman.exe\/pro Plus Imap4 Edition\/ Aki pmman.exe\/standard Edition\/ Aki pmman.exe\/standard Plus Imap4 Edition |
|
| Weaknesses | CWE-22 | |
| CPEs | cpe:2.3:a:aki:pmman.exe\/enterprise_edition\/:*:*:*:*:*:*:*:* cpe:2.3:a:aki:pmman.exe\/pro_edition\/:*:*:*:*:*:*:*:* cpe:2.3:a:aki:pmman.exe\/pro_plus_imap4_edition\/:*:*:*:*:*:*:*:* cpe:2.3:a:aki:pmman.exe\/standard_edition\/:*:*:*:*:*:*:*:* cpe:2.3:a:aki:pmman.exe\/standard_plus_imap4_edition:*:*:*:*:*:*:*:* |
|
| Vendors & Products |
Aki
Aki pmman.exe\/enterprise Edition\/ Aki pmman.exe\/pro Edition\/ Aki pmman.exe\/pro Plus Imap4 Edition\/ Aki pmman.exe\/standard Edition\/ Aki pmman.exe\/standard Plus Imap4 Edition |
|
| Metrics |
ssvc
|
Projects
Sign in to view the affected projects.
Status: PUBLISHED
Assigner: jpcert
Published:
Updated: 2025-03-18T19:08:32.049Z
Reserved: 2023-08-29T05:55:03.449Z
Link: CVE-2023-40747
Updated: 2024-08-02T18:46:10.362Z
Status : Awaiting Analysis
Published: 2024-03-18T01:15:48.440
Modified: 2025-03-18T20:15:20.477
Link: CVE-2023-40747
No data.
OpenCVE Enrichment
No data.
Weaknesses