Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

EmuMail Web Root Path Disclosure Vulnerability

Contributed by FVS <fab@aisec.net>:

By inserting a string such into the Email form:

<script>alert(@)</script>

Will return:

"Software error:
/\s+)my.com)</script>\s+/: unmatched () in regexp at /home/EMU/webmail/html/emumail.cgi line 834.







 

Privacy Statement
Copyright 2008, SecurityFocus