CVE-2008-0210
Published Jan 10, 2008Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via…
Vendor/product archive
2 CVEs tagged to uebimiau / webmail — 0 Critical, 0 High, 2 Medium, 0 Low, 0 Unrated.
Uebimiau Webmail 2.7.10 and 2.7.2 does not protect authentication state variables from being set through HTTP requests, which allows remote attackers to bypass authentication via…
Directory traversal vulnerability in error.php in Uebimiau Webmail 2.7.10 and 2.7.2 allows remote authenticated users to read arbitrary files via a .. (dot dot) in the selected_th…