IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to obtain configuration information via a direct request to the /server URI, which triggers a call to the phpinfo function.
- http://securityreason.com/securityalert/8404
No PoCs found on GitHub currently.