Vulnerabilities > CVE-2000-0716 - Unspecified vulnerability in Alt-N Mdaemon 2.8

047910
CVSS 2.6 - LOW
Attack vector
NETWORK
Attack complexity
HIGH
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
NONE
Availability impact
NONE
network
high complexity
alt-n

Summary

WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.

Vulnerable Configurations

Part Description Count
Application
Alt-N
1