Back

CVE-2006-0611

Directory traversal vulnerability in compose.pl in @Mail 4.3 and earlier for Windows allows remote attackers to upload arbitrary files to arbitrary locations via a .. (dot dot) in the unique parameter.

Published: Feb 9, 2006 Modified: Jun 16, 2026

CVSS Metrics

Affected Products (1)

Vendor Product Version
atmail atmail 4.3

GitHub Security Advisory GHSA-xg7w-gqvr-cp6v

Directory traversal vulnerability in compose.pl in @Mail 4.3 and earlier for Windows allows...

Risk Scores

CVSS Score 7.5 / 10
EPSS Score 1.85%

Top 23% most likely to be exploited

Threat Score 30.6 / 100

Data Sources

NVD EPSS GitHub