7.5
CVSSv2

CVE-2004-2071

Published: 31/12/2004 Updated: 11/07/2017
CVSS v2 Base Score: 7.5 | Impact Score: 6.4 | Exploitability Score: 10
VMScore: 755
Vector: AV:N/AC:L/Au:N/C:P/I:P/A:P

Vulnerability Summary

Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote malicious users to bypass authentication in the web interface via an HTTP GET request with two slashes ("//") after the server name.

Vulnerable Product Search on Vulmon Subscribe to Product

macallan mail solution 2.8.4.6_build_260

Exploits

source: wwwsecurityfocuscom/bid/9646/info A vulnerability has been reported in Macallan Mail Solution that may permit remote attackers to bypass authentication for the web interface This may be exploited by submitting a specially crafted HTTP GET request for the administration page of the web interface There are conflicting reports fro ...