Vulnerability Description
Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recipient opens the message.
CVSS Score
HIGH
Affected Products
| Vendor | Product | Versions |
|---|---|---|
| Seattle Lab Software | Emurl | <= 2.0 |
References
- http://marc.info/?l=ntbugtraq&m=93316253431588&w=2
- http://www.securityfocus.com/bid/544PatchVendor Advisory
- http://marc.info/?l=ntbugtraq&m=93316253431588&w=2
- http://www.securityfocus.com/bid/544PatchVendor Advisory
FAQ
What is CVE-1999-1017?
CVE-1999-1017 is a vulnerability with a CVSS score of 7.5 (HIGH). Seattle Labs Emurl 2.0, and possibly earlier versions, stores e-mail attachments in a specific directory with scripting enabled, which allows a malicious ASP file attachment to execute when the recipi...
How severe is CVE-1999-1017?
CVE-1999-1017 has been rated HIGH with a CVSS base score of 7.5/10. Review the CVSS metrics above for detailed severity breakdown.
Is there a patch for CVE-1999-1017?
Check the references section above for vendor advisories and patch information. Affected products include: Seattle Lab Software Emurl.