PT-2002-1506 · Incredimail · Incredimail

Publicado

2002-06-11

·

Atualizado

2008-09-05

·

CVE-2002-0455

CVSS v2.0

5.0

Média

VetorAV:N/AC:L/Au:N/C:N/I:P/A:N
Name of the Vulnerable Software and Affected Versions IncrediMail (affected versions not specified)
Description The issue concerns how IncrediMail stores attachments in a directory with a fixed name. This could potentially make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.
Recommendations At the moment, there is no information about a newer version that contains a fix for this vulnerability.

Exploit

Encontrou algum problema na descrição? Tem algo a acrescentar? Fique à vontade para nos escrever 👾

Identificadores relacionados

CVE-2002-0455

Produtos afetados

Incredimail