Cross-site request forgery (CSRF) vulnerability in MailEnable Professional before 2.37 allows remote attackers to modify arbitrary configurations and perform unauthorized actions as arbitrary users via a link or IMG tag.
References
Configurations
Configuration 1 (hide)
|
Information
Published : 2007-02-15 15:28
Updated : 2018-10-16 09:33
NVD link : CVE-2007-0652
Mitre link : CVE-2007-0652
JSON object : View
CWE
Products Affected
mailenable
- mailenable_professional