Directory Traversal Vulnerability in JavaMail Product by Sun Microsystems
CVE-2005-1105
Currently unrated
What is CVE-2005-1105?
The directory traversal vulnerability in the MimeBodyPart.getFileName method of JavaMail 1.3.2 permits remote attackers to exploit the Content-Disposition header. By manipulating the filename parameter with a '..' (dot dot), hackers can gain unauthorized access to the file system, potentially leading to the writing of arbitrary files. This poses significant risks to system integrity and confidentiality.
References
Timeline
Vulnerability published
Vulnerability Reserved