Логотип exploitDog
bind:CVE-2013-1904
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2013-1904

Количество 4

Количество 4

ubuntu логотип

CVE-2013-1904

около 12 лет назад

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

CVSS2: 5
EPSS: Низкий
nvd логотип

CVE-2013-1904

около 12 лет назад

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

CVSS2: 5
EPSS: Низкий
debian логотип

CVE-2013-1904

около 12 лет назад

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Ro ...

CVSS2: 5
EPSS: Низкий
github логотип

GHSA-xhjq-9gfc-7x74

больше 3 лет назад

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
ubuntu логотип
CVE-2013-1904

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

CVSS2: 5
0%
Низкий
около 12 лет назад
nvd логотип
CVE-2013-1904

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

CVSS2: 5
0%
Низкий
около 12 лет назад
debian логотип
CVE-2013-1904

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Ro ...

CVSS2: 5
0%
Низкий
около 12 лет назад
github логотип
GHSA-xhjq-9gfc-7x74

Absolute path traversal vulnerability in steps/mail/sendmail.inc in Roundcube Webmail before 0.7.3 and 0.8.x before 0.8.6 allows remote attackers to read arbitrary files via a full pathname in the _value parameter for the generic_message_footer setting in a save-perf action to index.php, as exploited in the wild in March 2013.

0%
Низкий
больше 3 лет назад

Уязвимостей на страницу