积极预防 及时发现
快速响应 力保恢复
Metamail 2.7-7.2之前的版本允许远程攻击者通过包含一个描述要被修改的文件的完整路径名的...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-19991263 CVE编号:CVE-1999-1263 安全级别:中 漏洞中文描述: Metamail 2.7-7.2之前的版本允许远程攻击者通过包含一个描述要被修改的文件的完整路径名的uuencoded附件的电子邮件消息来覆盖任意文件,该过程被Metamail脚本(例如sun-audio-file)中的uuencode处理。 漏洞英文描述: Metamail before 2.7-7.2 allows remote attackers to overwrite arbitrary files via an e-mail message containing a uuencoded attachment that specifies the full pathname for the file to be modified, which is processed by uuencode in Metamail scripts such as s 漏洞参考: 系统类型:其他 漏洞类型:其他