← Back

CVE-2005-1252

nvd nist
Published: May 25, 2005Modified: Apr 16, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

Directory traversal vulnerability in the Web Calendaring server in Ipswitch Imail 8.13, and other versions before IMail Server 8.2 Hotfix 2, allows remote attackers to read arbitrary files via "..\" (dot dot backslash) sequences in the query string argument in a GET request to a non-existent .jsp file.

Affected (2)

2 products
Imail
Imail Server
Configuration A
2 vulnerable
Vulnerable SoftwareAffected Versions
Version 8.13
Up to 8.2_hotfix_2

References (8)

Timeline

No history available yet.