Unrated severityNVD Advisory· Published Nov 23, 2023· Updated Oct 1, 2024
Path Traversal in BVRP Software SLmail
CVE-2023-4593
Description
Path traversal vulnerability whose exploitation could allow an authenticated remote user to bypass SecurityManager's intended restrictions and list a parent directory via any filename, such as a multiple ..%2F value affecting the 'dodoc' parameter in the /MailAdmin_dll.htm file.
Affected products
1- Range: 5.5.0.4433
Patches
0No patches discovered yet.
Vulnerability mechanics
AI mechanics synthesis has not run for this CVE yet.
References
1News mentions
0No linked articles in our index yet.