Total vulnerabilities in the database
Extcompose in metamail does not verify the output file before writing to it, which allows local users to overwrite arbitrary files via a symlink attack.
CVSS v2:
No CWE or OWASP classifications available.