SLWebMail 3 on Windows systems allows remote attackers to identify the full path of the server via invalid requests to DLLs such as WebMailReq.dll, which reveals the path in an error message.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=105232436210273&w=2 | mailing list |
http://www.nextgenss.com/advisories/slwebmail-vulns.txt | vendor advisory |
http://marc.info/?l=ntbugtraq&m=105233363721919&w=2 | mailing list |