CVE-2001-0857
CVE-2001-0857
Cross-site scripting vulnerability in status.php3 in Imp Webmail 2.2.6 and earlier allows remote attackers to gain access to the e-mail of other users by hijacking session cookies via the message parameter.
Affected products
n/a · n/apublic PoCs found — 1
exploitdbwww.exploit-db.com/exploits/21151unverified⚠ Public resources, to assess the exposure of systems you control or are authorized to test. Test only with authorization.
Want to know if your infrastructure is exposed to this?
Talk to TrueHacking →References
http://distro.conectiva.com.br/atualizacoes/?id=a&anuncio=000437http://marc.info/?l=bugtraq&m=100535679608486&w=2http://marc.info/?l=bugtraq&m=100540578822469&w=2https://exchange.xforce.ibmcloud.com/vulnerabilities/7496http://www.caldera.com/support/security/advisories/CSSA-2001-039.0.txthttp://www.osvdb.org/668http://www.securityfocus.com/bid/3525