CVE-2010-2116
N/A
N/A
Summary
The web interface in McAfee Email Gateway (formerly IronMail) 6.7.1 allows remote authenticated users, with only Read privileges, to gain Write privileges to modify configuration via the save action in a direct request to admin/systemWebAdminConfig.do.
Affected Software
| Vendor | Product | Version Range | Status |
|---|---|---|---|
| n/a | n/a | n/a | affected |
Weaknesses
- n/a
ADP Enrichment
CVE Program Container
Additional References
- http://secunia.com/advisories/39881
- http://www.securitytracker.com/id?1024018
- http://osvdb.org/64832
- http://www.vupen.com/english/advisories/2010/1239
- http://www.cybsec.com/vuln/cybsec_advisory_2010_0501_Ironmail_Advisory_Web_Access_Broken.pdf
References
- http://secunia.com/advisories/39881
- http://www.securitytracker.com/id?1024018
- http://osvdb.org/64832
- http://www.vupen.com/english/advisories/2010/1239
- http://www.cybsec.com/vuln/cybsec_advisory_2010_0501_Ironmail_Advisory_Web_Access_Broken.pdf
Feedback
Was this page helpful?
Glad to hear it! Please tell us how we can improve.
Sorry to hear that. Please tell us how we can improve.