CVE Vulnerabilities

CVE-2001-1284

Published: Oct 12, 2001 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
7.5 HIGH
AV:N/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Ipswitch IMail 7.04 and earlier uses predictable session IDs for authentication, which allows remote attackers to hijack sessions of other users.

Affected Software

NameVendorStart VersionEnd Version
ImailIpswitch6.0.2 (including)6.0.2 (including)
ImailIpswitch6.0.6 (including)6.0.6 (including)
ImailIpswitch7.0.4 (including)7.0.4 (including)

References