CVE-2005-1252

Directory traversal vulnerability in the Web Calendaring server in Ipswitch Imail 8.13, and other versions before IMail Server 8.2 Hotfix 2, allows remote attackers to read arbitrary files via "..\" (dot dot backslash) sequences in the query string argument in a GET request to a non-existent .jsp file.
Configurations

Configuration 1 (hide)

OR cpe:2.3:a:ipswitch:imail:8.13:*:*:*:*:*:*:*
cpe:2.3:a:ipswitch:imail_server:*:*:*:*:*:*:*:*

History

No history.

Information

Published : 2005-05-25 04:00

Updated : 2023-12-10 10:28


NVD link : CVE-2005-1252

Mitre link : CVE-2005-1252

CVE.ORG link : CVE-2005-1252


JSON object : View

Products Affected

ipswitch

  • imail
  • imail_server