Nph-mr.cgi mailreader install




















You are viewing this page in an unauthorized frame window. Email List FAQ. Categories Data Feeds. Vulnerabilities Products. Terms of Use. Vulnerability Search.

CPE Search. Analysis Description Directory traversal vulnerability in nph-mr. CVSS 3. It runs on a web server, and acts as an http proxy, in CGI form. A prudent site owner would hide it behind. Not all functions will work e. A web cracker can now use google to enumerate his list of proxy servers, like so:inurl:"nph-proxy.

Kali Linux. Penetration Testing. Kali NetHunter. SecurityTracker Alert ID: Original Entry Date: Oct 29 Impact: Disclosure of system information , Disclosure of user information , Execution of arbitrary code via network , User access via network. Version s : 2. Description: Two vulnerabilities were reported in the Mailreader. A remote user can read files and execute arbitrary commands on the system.

SCAN Associates reported that the product contains multiple input validation flaws. A remote user can use null byte poisoning to overwrite the 'configLanguage' value to display arbitrary files on the system that are readable by the web server [CVE: CVE].



0コメント

  • 1000 / 1000