Family: Web Servers --> Category: infos
IMail account hijack Vulnerability Scan
Vulnerability Scan Summary
Checks for version of IMail web interface
Detailed Explanation for this Vulnerability Test
The remote host is running IMail web interface.
In this version, the session is maintained via the URL. It
will be disclosed in the Referer field if you receive an
email with external links (e.g. images)
Solution : Upgrade to IMail 7.06
or turn off the 'ignore source address in security check' option.
Threat Level: Medium
Click HERE for more information and discussions on this network vulnerability scan.