Vulnerabilities (CVE)

Filtered by vendor Comingchina Subscribe
Filtered by product U-mail Webmail Server
Total 1 CVE
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2008-4932 1 Comingchina 1 U-mail Webmail Server 2023-12-10 9.0 HIGH N/A
webmail/modules/filesystem/edit.php in U-Mail Webmail server 4.91 allows remote attackers to overwrite arbitrary files via an absolute pathname in the path parameter and arbitrary content in the content parameter. NOTE: this can be leveraged for code execution by writing to a file under the web document root.