Secunia Logo
 
CVE Reference: CVE-2005-1657
NOTE: The text on this page is written by CVE MITRE and reflects neither the opinions of Secunia or the results of our research. All data on this page is written and maintained by CVE MITRE.

Original Page at CVE MITRE:
CVE-2005-1657

Description:
Multiple directory traversal vulnerabilities in Mercur Messaging 2005 SP2 allow remote attackers to perform unauthorized file operations via the Folder.Id parameter to (1) deletefolder.ctml, (2) deletemessage.ctml, (3) origmessage.ctml, or (4) readmessage.ctml, the Message.Id parameter to editmessage.ctml, or the (5) Message.Command parameter to messages.ctml.

CVE Status:
Candidate

References:

SAID
  Secunia Advisory: SA15234

OSVDB
  16225
  16224
  16223
  16222
  16221
  16220


Return to the previous page.