CVE: CVE-2002-1710

Export to Word

The attachment capability in Compose Mail in BasiliX Webmail 1.1.0 does not check whether the attachment was uploaded by the user or came from a HTTP POST, which could allow local users to steal sensitive information like a password file.

Threat-Mapped Scoring

Score: 3.0

Priority: P2 - Serious (High)

EPSS

Score: 0.0007
Percentile: 0.22052

CVSS Scoring

CVSS v2 Score: 3.6

Severity:

Affected Products

← Back to Home