@Mail Compose.PL Directory Traversal Vulnerability
BID:16470
Info
@Mail Compose.PL Directory Traversal Vulnerability
| Bugtraq ID: | 16470 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Jan 19 2006 12:00AM |
| Updated: | Feb 07 2006 08:55PM |
| Credit: | Tan Chew Keong of Secunia Research is credited with the discovery of this vulnerability. |
| Vulnerable: |
AtMail @Mail 4.3 |
| Not Vulnerable: | |
Discussion
@Mail Compose.PL Directory Traversal Vulnerability
@Mail is prone to a directory-traversal vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to overwrite arbitrary files in the context of the affected application. Depending on the files overwritten, this may facilitate a compromise of the underlying system; other attacks are also possible.
This issue is reported to affect @Mail installations on Microsoft Windows only. Note that the default installation of Apache on Microsoft Windows is run with SYSTEM privileges, thus elevating the impact of this issue.
@Mail is prone to a directory-traversal vulnerability. This issue is due to a failure in the application to properly sanitize user-supplied input.
An attacker can exploit this issue to overwrite arbitrary files in the context of the affected application. Depending on the files overwritten, this may facilitate a compromise of the underlying system; other attacks are also possible.
This issue is reported to affect @Mail installations on Microsoft Windows only. Note that the default installation of Apache on Microsoft Windows is run with SYSTEM privileges, thus elevating the impact of this issue.
Exploit / POC
@Mail Compose.PL Directory Traversal Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
@Mail Compose.PL Directory Traversal Vulnerability
Solution:
The vendor reports a patch will be available by February 7, 2006 to address this issue. Contact the vendor for more information.
Solution:
The vendor reports a patch will be available by February 7, 2006 to address this issue. Contact the vendor for more information.
References
@Mail Compose.PL Directory Traversal Vulnerability
References:
References:
- @Mail Homepage (@Mail)
- @Mail v4.3 Windows attachment issue (@mail)
- @Mail Webmail Attachment Upload Directory Traversal (Secunia)