Directory Traversal Flaw in MailEnable by MailEnable Pty Ltd
CVE-2015-9277
9.1CRITICAL
What is CVE-2015-9277?
The vulnerability in MailEnable allows attackers to exploit directory traversal weaknesses, enabling unauthorized access to other users' messages. Malicious users can manipulate file paths through the mishandling of sequences such as '/../' to read, upload, or delete files on the server, compromising user privacy and system integrity. Users are strongly advised to upgrade to version 8.60 or later to mitigate these risks.
