CyberSec.Space Logo
Back to CVE Browser

CVE-2005-3287

MEDIUM
5.0
CVSS Severity Score
EPSS Score0.1380%
EPSS Percentile41.56th
PublishedOct 23, 2005
Last ModifiedApr 16, 2026

Vulnerability Description

Incomplete blacklist vulnerability in Mailsite Express allows remote attackers to upload and possibly execute files via attachments with executable extensions such as ASPX, which are not converted to .TXT like other dangerous extensions, and which can be directly requested from the cache directory.

Affected Platforms (CPE)

📦
Rockliffe

Mailsite Express

All versions

References & Advisories

Related Vulnerabilities