Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
IncrediMail stores attachments in a directory with a fixed name, which could make it easier for attackers to exploit vulnerabilities in other software that rely on installing and reading files from directories with known pathnames.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
IncrediMail Ltd. IncrediMail附件路径已知漏洞
Vulnerability Description
Incredimail是美国Perion公司的一套电子邮件客户端软件。该软件具有邮件系统的基本功能,并支持多种多媒体,如声音、动画和背景等。 在某些版本的Incredimail中存在附件可猜测漏洞,当接收到包含文件附件的邮件时,文件会自动存储在本地系统预先定位的路径上,攻击者可以利用这个信息来进一步对系统进行攻击。 Incredimail把自动接收到的邮件放在(以Windwos 2000 pro为例)如下目录中: C:\Program Files\IncrediMail\Data\Identities\{
CVSS Information
N/A
Vulnerability Type
N/A