Логотип exploitDog
bind:CVE-2001-1286
Консоль
Логотип exploitDog

exploitDog

bind:CVE-2001-1286

Количество 2

Количество 2

nvd логотип

CVE-2001-1286

почти 24 года назад

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

CVSS2: 7.5
EPSS: Низкий
github логотип

GHSA-9p7f-mx26-x423

больше 3 лет назад

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
nvd логотип
CVE-2001-1286

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

CVSS2: 7.5
1%
Низкий
почти 24 года назад
github логотип
GHSA-9p7f-mx26-x423

Ipswitch IMail 7.04 and earlier stores a user's session ID in a URL, which could allow remote attackers to hijack sessions by obtaining the URL, e.g. via an HTML email that causes the Referrer to be sent to a URL under the attacker's control.

1%
Низкий
больше 3 лет назад

Уязвимостей на страницу