VYPR
Unrated severityNVD Advisory· Published Dec 28, 2005· Updated Jun 16, 2026

CVE-2005-4557

CVE-2005-4557

Description

dir/include.html in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, allows remote attackers to include arbitrary local files via a null byte (%00) in the lang parameter, possibly due to a directory traversal vulnerability.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

4
  • cpe:2.3:a:deerfield:visnetic_mail_server:8.3.0_build1:*:*:*:*:*:*:*
  • IceWarp/WebMail2 versions
    cpe:2.3:a:icewarp:web_mail:5.5.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:icewarp:web_mail:5.5.1:*:*:*:*:*:*:*
    • (no CPE)range: = 5.5.1
  • cpe:2.3:a:merak:mail_server:8.3.0r:*:*:*:*:*:*:*

Patches

Vulnerability mechanics

References

9

News mentions

0

No linked articles in our index yet.