Mail-Gear 1.0 web interface is vulnerable to Directory Traversal
29 Nov. 1999
Summary
UssrLabs found that Symantec's Mail-Gear Web interface server is vulnerable to Directory Traversal. Using the string '../' in a URL, an attacker can read any file on the local drive, include files outside the bounding HTML directory.