Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes (//) after the server name.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Mail_solution | Macallan | 2.8.4.6_build_260 (including) | 2.8.4.6_build_260 (including) |