CVE-2023-4593: Seattlelab Slmail
Medium severity, CVSS 6.5. EPSS: 1.1% chance of exploitation in the next 30 days.
Path traversal vulnerability whose exploitation could allow an authenticated remote user to bypass SecurityManager's intended restrictions and list a parent directory via any filename, such as a multiple ..%2F value affecting the 'dodoc' parameter in the /MailAdmin_dll.htm file.
Affected products
- Seattlelab Slmail: version 5.5.0.4433 only
Published 2023-11-23. Last modified 2026-06-17.