7.5

CVE-2001-1211

Ipswitch IMail 7.0.4 and earlier allows attackers with administrator privileges to read and modify user alias and mailing list information for other domains hosted by the same server via the (1) aliasadmin or (2) listadm1 CGI programs, which do not properly verify that an administrator is the administrator for the target domain.

Data is provided by the National Vulnerability Database (NVD)
IpswitchImail Version6.1
IpswitchImail Version6.2
IpswitchImail Version6.3
IpswitchImail Version6.4
IpswitchImail Version7.0.1
IpswitchImail Version7.0.2
IpswitchImail Version7.0.3
IpswitchImail Version7.0.4
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Type Source Score Percentile
EPSS FIRST.org 0.1% 0.276
CVSS Metriken
Source Base Score Exploit Score Impact Score Vector string
nvd@nist.gov 7.5 10 6.4
AV:N/AC:L/Au:N/C:P/I:P/A:P