Brightmail Spamfilter 6.0 and earlier beta releases allows remote attackers to read mail from other users by modifying the id parameter in a viewMsgDetails.do request.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Brightmail_antispam | Symantec | 6.0 (including) | 6.0 (including) |