CVE-2008-0333

Publication date

2008-01-17 21:07:00

Family

mitre

State

PUBLISHED

Description

Directory traversal vulnerability in download_view_attachment.aspx in AfterLogic MailBee WebMail Pro 4.1 for ASP.NET allows remote attackers to read arbitrary files via a .. (dot dot) in the temp_filename parameter.