Security Advisory
CVE-2000-0977
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
mailfile.cgi CGI program in MailFile 1.10 allows remote attackers to read arbitrary files by specifying the target file name in the "filename" parameter in a POST request, which is then sent by email to the address specified in the "email" parameter.