CVE-2004-1715
NONE EPSS 78.8%
Published Aug 11, 200421y ago · Modified Jun 16, 20262w ago
Published Aug 11, 2004 21y ago
Last Modified Jun 16, 2026 2w ago
Description
Directory traversal vulnerability in MIMEsweeper for Web before 5.0.4 allows remote attackers or local users to read arbitrary files via "..\\", "..\", and similar dot dot sequences in the URL.
Threat Intelligence
EPSS Exploit Probability
78.8% percentile
Exploit & Patch Status
Public Exploit Known
Patch Available
Affected Products 2
| Vendor | Product | Version | Range |
|---|---|---|---|
| clearswift | mimesweeper_for_web | 4.0 | any |
| clearswift | mimesweeper_for_web | 5.0.1 | any |
References 6
- marc.info http://marc.info/?l=bugtraq&m=109224211512029&w=2
- marc.info http://marc.info/?l=bugtraq&m=109225567212978&w=2
- packetstormsecurity.nl http://packetstormsecurity.nl/0408-exploits/clearswift.txt
- secunia.com http://secunia.com/advisories/12273
- securityfocus.com http://www.securityfocus.com/bid/10918
- exchange.xforce.ibmcloud.com https://exchange.xforce.ibmcloud.com/vulnerabilities/16960
Remediation
- securityfocus.com http://www.securityfocus.com/bid/10918