CVE-2002-2165

Publication date

2005-11-16 21:17:00

Family

mitre

State

PUBLISHED

Description

The IMHO Webmail module 0.97.3 and earlier for Roxen leaks the REFERER from the browsers previous login session in an error page, which allows local users to read another users inbox.