Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in the IMAP server in ArGoSoft Mail Server Pro 1.8.8.1 allows remote authenticated users to create arbitrary folders via a .. (dot dot) in the RENAME command.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
ArGoSoft Mail Server Pro IMAP Server远程目录遍历漏洞
Vulnerability Description
ArGoSoft Mail Server是一款Windows平台下的全功能的邮件服务器,支持POP3/SMTP/FINGER等协议。 ArGoSoft Mail Server在处理用户提交的变量数据时存在输入验证漏洞,远程攻击者可能利用此漏洞遍历服务器的目录。由于没有充分地检查RENAME变量的输入数据,导致ArGoSoft Mail Server中的IMAP服务存在目录遍历漏洞。远程攻击者可以以服务进程的权限向服务器的文件系统写入文件。
CVSS Information
N/A
Vulnerability Type
N/A