Show filters
2 Total Results
Displaying 1-2 of 2
Sort by:
Attacker Value
Unknown
CVE-2003-1481
Disclosure Date: December 31, 2003 (last updated February 22, 2025)
CommuniGate Pro 3.1 through 4.0.6 sends the session ID in the referer field for an HTTP request for an image, which allows remote attackers to hijack mail sessions via an e-mail with an IMG tag that references a malicious URL that captures the referer.
0
Attacker Value
Unknown
CVE-2000-0634
Disclosure Date: April 03, 2000 (last updated February 22, 2025)
The web administration interface for CommuniGate Pro 3.2.5 and earlier allows remote attackers to read arbitrary files via a .. (dot dot) attack.
0