Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying the id parameter in a viewMsgDetails.do request.
Link | Tags |
---|---|
http://marc.info/?l=bugtraq&m=108880205115802&w=2 | mailing list |
https://exchange.xforce.ibmcloud.com/vulnerabilities/16609 | vdb entry |
http://marc.info/?l=bugtraq&m=108981452101353&w=2 | mailing list |
http://www.securityfocus.com/bid/10657 | exploit vdb entry vendor advisory |