iXmail 0.2/0.3 - 'iXmail_NetAttach.php' File Deletion
Author: leseulfrog
type: webapps
platform: php
port:
date_added: 2003-06-26
date_updated: 2012-11-20
verified: 1
codes: OSVDB-53712
tags:
aliases:
screenshot_url:
application_url:
source: https://www.securityfocus.com/bid/8046/info
A vulnerability has been reported for iXmail that may allow for the deletion of files. The vulnerability occurs due to insufficient sanitization of user-supplied input for certain URI parameters.
http://www.example.com/ixmail_netattach.php?file=ixmail_netattach.php