cloudscan.blogspot.com
http://cloudscan.blogspot.com/2010/09/smarter-stats-533819-file-fuzzing.html CVE-2010-3486
SmarterMail 7.1.3876 - Directory Traversal
Record summary
CVE-2010-3486 has a selected CVSS score of 5.0; EIP currently links 3 catalogued exploits.
Description
Directory traversal vulnerability in FileStorageUpload.ashx in SmarterMail 7.1.3876 allows remote attackers to read arbitrary files via a (1) ../ (dot dot slash), (2) %5C (encoded backslash), or (3) %255c (double-encoded backslash) in the name parameter.
Description source: CVE List
Exploitation context
Available material
- Catalogued exploits
- 3
Proofs of concept
3Catalogued exploits
ExploitDBSmarterMail 7.1.3876 - Directory TraversalExploitDB exploitby sqlhackerNot analyzed1 file
ExploitDBSmarterMail < 7.2.3925 - LDAP InjectionExploitDB exploitby sqlhackerNot analyzed1 file
ExploitDBSmarterMail 7.3/7.4 - Multiple VulnerabilitiesExploitDB exploitby Hoyt LLC ResearchNot analyzed1 file
References
6packetstormsecurity.org
http://packetstormsecurity.org/1009-exploits/smartermail-traversal.txt 15048exploit
http://www.exploit-db.com/exploits/15048 43324vdb entry
http://www.securityfocus.com/bid/43324 smartermail-get-directory-traversal(61910)vdb entry
https://exchange.xforce.ibmcloud.com/vulnerabilities/61910 nvd.nist.gov
https://nvd.nist.gov/vuln/detail/CVE-2010-3486