CVE-2004-1721: Medium severity Merak Mail Server vulnerability
Published Aug 17, 2004
·Updated
The (1) function.php or (2) function.view.php scripts in Merak Mail Server 5.2.7 allow remote attackers to read arbitrary PHP files via a direct HTTP request to port 32000.
Affected Software
1 affected component
Merak Mail Server=5.2.7
Remediation
Patch Available
Patch Available
Patch Available
Patch Available
Event History
Aug 17, 2004
CVE Published
04:00 AM
Feb 26, 2005
CVE Published
via MITRE·10:00 AM
Data Sourced
via MITRE·10:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2004-1721?
CVE-2004-1721 is considered a high severity vulnerability due to the potential for remote attackers to read arbitrary PHP files.
2
How do I fix CVE-2004-1721?
To fix CVE-2004-1721, update the Merak Mail Server to a version later than 5.2.7 that addresses this vulnerability.
3
What is the impact of CVE-2004-1721?
The impact of CVE-2004-1721 allows unauthorized users to access sensitive information by reading arbitrary PHP files on the server.
4
Which versions of Merak Mail Server are affected by CVE-2004-1721?
CVE-2004-1721 affects Merak Mail Server version 5.2.7 specifically.
5
Can CVE-2004-1721 be exploited remotely?
Yes, CVE-2004-1721 can be exploited remotely through a direct HTTP request to the vulnerable server.