CNCVE编号:CNCVE-20000930 CVE编号:CVE-2000-0930 安全级别:中 漏洞中文描述: Pegasus Mail 3.12中存在一个漏洞,该漏洞可导致远程攻击者通过一个嵌入的URL调用打开-F开关的mailto:来阅读任意文件。 漏洞英文描述: Pegasus Mail 3.12 allows remote attackers to read arbitrary files via an embedded URL that calls the mailto: protocol with a -F switch. 漏洞参考: BUGTRAQ:20001003 Pegasus mail file reading vulnerability | URL:http://archives.neohapsis.com/archives/bugtraq/2000-10/0039.html | BUGTRAQ:20001030 Pegasus Mail file reading vulnerability | URL:http://archives.neohapsis.com/archives/bugtraq/200 系统类型: Unix/Linux Win95/98/ME Win2000/NT 漏洞类型:设计错误