Beveiligingsadvies

CVE-2024-6741

CVE-kwetsbaarheidsdetails - eXtreme Datacenter Security Operations

Gepubliceerd 2024-07-15 08:26:32
Laatst bijgewerkt 2024-08-01 21:41:04
Toegewezen door twcert
CVSS-score 5.8
Status PUBLISHED

Beschrijving

Openfind's Mail2000 has a vulnerability that allows the HttpOnly flag to be bypassed. Unauthenticated remote attackers can exploit this vulnerability using specific JavaScript code to obtain the session cookie with the HttpOnly flag enabled.