CVE-2002-1710

The attachment capability in Compose Mail in BasiliX Webmail 1.1.0 does not check whether the attachment was uploaded by the user or came from a HTTP POST, which could allow local users to steal sensitive information like a password file.

Scoring

CVSS base score
0
EPSS probability
0.07%
Published
2005-06-21
Last modified
2026-03-16

Affected products

Markdown version · Browse all CVEs