Vulnerabilities
Vulnerable Software
Aeromail:  >> Aeromail  Security Vulnerabilities
Cross-site scripting vulnerability in message.php for AeroMail before 1.45 allows remote attackers to execute Javascript as an AeroMail user via an email message with the script in the Subject line.
CVSS Score
7.5
EPSS Score
0.009
Published
2002-08-12
send_message.php in AeroMail before 1.45 allows remote attackers to read arbitrary files on the server, instead of just uploaded files, via an attachment that modifies the filename to be uploaded.
CVSS Score
5.0
EPSS Score
0.014
Published
2002-07-26


Contact Us

Shodan ® - All rights reserved