CVE-2015-1503 | IceWarp Mail Server up to 11.1 css.php script/style path traversal (EDB-44587 / ID 65609)
A vulnerability, which was classified as problematic, was found in IceWarp Mail Server up to 11.1. Affected is an unknown function of the file webmail/client/skins/default/css/css.php. The manipulation of the argument script/style with the input …/. leads to path traversal.
This vulnerability is traded as CVE-2015-1503. It is possible to launch the attack remotely. Furthermore, there is an exploit available.
It is recommended to upgrade the affected component.