Macallan Mail Solution 2.8.4.6 (Build 260), and possibly earlier versions, allows remote attackers to bypass authentication in the web interface via an HTTP GET request with two slashes (//) after the server name.
Name | Vendor | Start Version | End Version |
---|---|---|---|
Mail_solution | Macallan | 2.8.4.6_build_260 (including) | 2.8.4.6_build_260 (including) |