First published: Tue Dec 31 2002(Updated: )
Ensim WEBppliance 3.0 and 3.1 allows remote attackers to read mail intended for other users by defining an alias that is the target's email address.
Credit: cve@mitre.org
Affected Software | Affected Version | How to fix |
---|---|---|
Ensim WEBppliance | =3.0 | |
Ensim WEBppliance | =3.1 |
Sign up to SecAlerts for real-time vulnerability data matched to your software, aggregated from hundreds of sources.
CVE-2002-2344 is considered a critical vulnerability due to the potential for unauthorized access to other users' email.
To fix CVE-2002-2344, update Ensim WEBppliance to the latest version that addresses this vulnerability.
CVE-2002-2344 affects Ensim WEBppliance versions 3.0 and 3.1.
Yes, CVE-2002-2344 allows remote attackers to read emails not intended for them, leading to data leakage.
Remote attackers can exploit CVE-2002-2344 by defining an alias that corresponds to the target's email address.