Vulnerabilities > CVE-2006-0929 - Remote Directory Traversal vulnerability in Argosoft Mail Server 1.8.8.1
Attack vector
NETWORK Attack complexity
LOW Privileges required
SINGLE Confidentiality impact
NONE Integrity impact
PARTIAL Availability impact
NONE Summary
Directory traversal vulnerability in the IMAP server in ArGoSoft Mail Server Pro 1.8.8.1 allows remote authenticated users to create arbitrary folders via a .. (dot dot) in the RENAME command.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 1 |
Nessus
NASL family | Misc. |
NASL id | ARGOSOFT_MS_IMAP_RENAME_DIR_TRAVERSAL.NASL |
description | The remote host is running ArGoSoft Mail Server, a messaging system for Windows. The IMAP server bundled with the version of ArGoSoft Mail Server installed on the remote host fails to filter directory traversal sequences from mailbox names passed to the |
last seen | 2020-06-01 |
modified | 2020-06-02 |
plugin id | 20977 |
published | 2006-02-25 |
reporter | This script is Copyright (C) 2006-2018 Tenable Network Security, Inc. |
source | https://www.tenable.com/plugins/nessus/20977 |
title | ArGoSoft Mail Server Pro IMAP RENAME Command Traversal Arbitrary Directory Creation |