CVE-2005-4558 EXPLOIT
6.5
MEDIUM · CVSS 2.0 · EPSS 8.5% (pctl 95)
Patch early
A public exploit exists.
Description
IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict acceptable values for the language parameter to mail/settings.html before it is stored in a database, which can allow remote authenticated users to include arbitrary PHP code via a URL in a modified lang_settings parameter to mail/index.html.
Scoring
| CVSS | 6.5 (MEDIUM, v2.0) |
|---|---|
| Vector | AV:N/AC:L/Au:S/C:P/I:P/A:P |
| EPSS | 8.49% — more likely to be exploited than 95% of all CVEs |
| On CISA KEV | no |
| Public exploit | yes |
| Published | 2005-12-28 |
| Last modified | 2026-06-16 |
Affected (3)
| Vendor | Product |
|---|---|
| deerfield | visnetic mail server |
| icewarp | web mail |
| merak | mail server |
Public exploits
| Source | Title | Date |
|---|---|---|
| exploit-db | IceWarp Universal WebMail - '/mail/settings.html?Language' Local File Inclusion | 2005-12-27 |
| exploit-db | IceWarp Universal WebMail - '/mail/index.html?lang_settings' Remote File Inclusion | 2005-12-27 |
References
- http://marc.info/?l=full-disclosure&m=113570229524828&w=2
- http://secunia.com/advisories/17046
- http://secunia.com/advisories/17865
- http://secunia.com/secunia_research/2005-62/advisory/
- http://securitytracker.com/id?1015412
- http://www.osvdb.org/22080
- http://www.osvdb.org/22081
- http://www.securityfocus.com/archive/1/420255/100/0/threaded
- http://www.securityfocus.com/bid/16069
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23904
- http://marc.info/?l=full-disclosure&m=113570229524828&w=2
- http://secunia.com/advisories/17046
- http://secunia.com/advisories/17865
- http://secunia.com/secunia_research/2005-62/advisory/
- http://securitytracker.com/id?1015412
- http://www.osvdb.org/22080
- http://www.osvdb.org/22081
- http://www.securityfocus.com/archive/1/420255/100/0/threaded
- http://www.securityfocus.com/bid/16069
- https://exchange.xforce.ibmcloud.com/vulnerabilities/23904
→ the Explorer · watch your stack · NVD