Ipswitch IMail 7.04 and earlier uses predictable session IDs for authentication, which allows remote attackers to hijack sessions of other users.
Affected Software
Name |
Vendor |
Start Version |
End Version |
Imail |
Ipswitch |
6.0.2 |
6.0.2 |
Imail |
Ipswitch |
6.0.6 |
6.0.6 |
Imail |
Ipswitch |
7.0.4 |
7.0.4 |
References