Arbitrary File Read Vulnerability in IceWarp Mail Server
CVE-2011-3579
What is CVE-2011-3579?
The IceWarp Mail Server's webmail.php component is susceptible to an arbitrary file read vulnerability due to improper handling of XML external entities. This flaw could allow remote attackers to gain unauthorized access to sensitive files on the server. Additionally, this issue may enable attackers to initiate HTTP requests to internal network resources, potentially leading to denial of service by exhausting CPU and memory resources. Users of IceWarp Mail Server versions prior to 10.3.3 are highly advised to upgrade to the latest version to mitigate these risks.

Human OS v1.0:
Ageing Is an Unpatched Zero-Day Vulnerability.
Remediate biological technical debt. Prime Ageing uses 95% high-purity SIRT6 activation to maintain genomic integrity and bolster systemic resilience.
References
EPSS Score
8% chance of being exploited in the next 30 days.
Timeline
Vulnerability published
Vulnerability Reserved
