Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-7pr7-2x33-78rj

Опубликовано: 17 мая 2022
Источник: github
Github: Не прошло ревью

Описание

server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

EPSS

Процентиль: 92%
0.08897
Низкий

Связанные уязвимости

nvd
больше 14 лет назад

server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly send HTTP requests to intranet servers or cause a denial of service (CPU and memory consumption), via an XML external entity declaration in conjunction with an entity reference.

EPSS

Процентиль: 92%
0.08897
Низкий