7.5
CVSSv2

CVE-2004-1661

Published: 02/09/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

MailWorks Professional allows remote malicious users to bypass authentication and gain privileges via a cookie that contains "auth=1" and "uId=1."

Vulnerable Product Search on Vulmon Subscribe to Product

sitecubed mailworks professional

Exploits

source: wwwsecurityfocuscom/bid/11095/info MailWorks Professional is reported prone to an authentication bypass vulnerability The application uses cookies to store variables that determine the status of the authentication process An attacker browsing the web application using specially crafted cookie data is able to bypass the authenti ...