High
CVSS 7.5
Overview
config/config_inc.php in iGENUS Webmail 2.02 and earlier allows remote attackers to include arbitrary local files via the SG_HOME parameter.
config/config_inc.php in iGENUS Webmail 2.02 and earlier allows remote attackers...
config/config_inc.php in iGENUS Webmail 2.02 and earlier allows remote attackers to include arbitrary local files via the SG_HOME parameter.
This vulnerability is rated 🟠 HIGH.
Recommended actions: