AUGUST 4, 2026
Live Feed
Return to register
Case File

CVE-2005-0332

HIGH · CVSS 7.5 EPSS 2.00%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2005-05-02 · Last synced 2026-08-04

Field Assessment

AI analysis pending.

CVE
CVE-2005-0332
Severity
HIGH
CVSS
7.5
EPSS
2.00%

Original Filing — NVD Description

Directory traversal vulnerability in DeskNow Mail and Collaboration Server 2.5.12 allows remote attackers to (1) upload and possibly execute files outside the directory via the AttachmentsKey parameter to attachment.do, as demonstrated using JSP pages, or (2) delete arbitrary files via the select_file parameter to file.do.