CommuniGate Pro 3.1 through 4.0.6 sends the session ID in the referer field for an HTTP request for an image, which allows remote attackers to hijack mail sessions via an e-mail with an IMG tag that references a malicious URL that captures the referer.
The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.
Link | Tags |
---|---|
http://www.securityfocus.com/archive/1/320438 | mailing list |
http://securityreason.com/securityalert/3290 | third party advisory |
http://www.securityfocus.com/bid/7501 | exploit vdb entry patch |
https://exchange.xforce.ibmcloud.com/vulnerabilities/11932 | vdb entry |