Kebi WebMail allows remote attackers to access the administrator menu and gain privileges via the /a/ hidden directory, which is installed under the web document root.
| Software | From | Fixed in |
|---|---|---|
| nara_vision / kebi_community | 1.0_enterprise | 1.0_enterprise.x |
| nara_vision / kebi_community | 1.0_academy | 1.0_academy.x |