Family: CGI abuses --> Category: infos
iXmail arbitrary file upload Vulnerability Scan
Vulnerability Scan Summary
Checks for iXMail
Detailed Explanation for this Vulnerability Test
The remote host is running the iXmail webmail interface.
There is a flaw in this interface which allows a possible hacker who
has a valid account on this host to upload and execute arbitrary
php files on this host, thus potentially gaining a shell on
this host. A possible hacker may also use this flaw to delete
arbitrary files on the remote host, with the rights of the
Solution : Upgrade to iXMail 0.4
Threat Level: Medium
Click HERE for more information and discussions on this network vulnerability scan.