Security Advisory

CVE-2007-3172

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2007-06-11 22:00:00
Last updated 2024-08-07 14:05:29
Assigner mitre
CVSS score not scored
State PUBLISHED

Description

Directory traversal vulnerability in demo/pop3/error.php in Uebimiau Webmail allows remote attackers to determine the existence of arbitrary directories via an absolute pathname and .. (dot dot) in the selected_theme parameter.