File Exposure in Roundcube Webmail Affected by Remote File Access Vulnerability
CVE-2015-5382
6.5MEDIUM
What is CVE-2015-5382?
A vulnerability in Roundcube Webmail allows remote authenticated users to read arbitrary files by using the _alt parameter during the vCard upload process. This can lead to unauthorized file exposure, enabling attackers to bypass restrictions and access sensitive information on the server.