Path traversal vulnerability whose exploitation could allow an authenticated remote user to bypass SecurityManager's intended restrictions and list a parent directory via any filename, such as a multiple ..%2F value affecting the 'dodoc' parameter in the /MailAdmin_dll.htm file.
2023-11-23T13:15:11.810
2024-11-21T08:35:30.280
Modified
CVSSv3.1: 6.5 (MEDIUM)
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | seattlelab | slmail | 5.5.0.4433 | Yes |
Operating System | microsoft | windows | - | No |