Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbitrary files via a (1) ../ (dot dot slash), (2) %5C (encoded backslash), or (3) %255c (double-encoded backslash) in the name parameter.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Smartertools SmarterMail目录遍历漏洞
Vulnerability Description
Smartermail是一款在国外非常流行的邮件服务器软件。 SmarterMail 7.1.3876版本中的FileStorageUpload.ashx文件中存在目录遍历漏洞。远程攻击者借助在name参数中的(1)“../”(点点斜杠)运算符,(2)%5C(编码反斜杠)或者(3)%255c(双编码反斜杠)读取任意文件。
CVSS Information
N/A
Vulnerability Type
N/A