Логотип exploitDog
bind:CVE-2002-2331
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2002-2331

Количество 2

Количество 2

nvd логотип

CVE-2002-2331

около 23 лет назад

W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restrict the types of files that can be uploaded as attachments, which allows remote attackers to execute arbitrary code by sending code in MIME attachments, then requesting the attachments.

CVSS2: 5.8
EPSS: Низкий
github логотип

GHSA-g939-xx53-374c

почти 4 года назад

W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restrict the types of files that can be uploaded as attachments, which allows remote attackers to execute arbitrary code by sending code in MIME attachments, then requesting the attachments.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2002-2331

W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restrict the types of files that can be uploaded as attachments, which allows remote attackers to execute arbitrary code by sending code in MIME attachments, then requesting the attachments.

CVSS2: 5.8
2%
Низкий
около 23 лет назад
github логотип
GHSA-g939-xx53-374c

W3Mail 1.0.2 through 1.0.5 with server side scripting (SSI) enabled in the attachments directory does not properly restrict the types of files that can be uploaded as attachments, which allows remote attackers to execute arbitrary code by sending code in MIME attachments, then requesting the attachments.

2%
Низкий
почти 4 года назад

Уязвимостей на страницу