CVE-2002-2165
LOW 2.1EPSS 0.8%
The IMHO Webmail module 0.97.3 and earlier for Roxen leaks the REFERER from the browser's previous login session in an error page, which allows local users to read another user's inbox.
- CVSS v2.0
- 2.1 LOW
AV:L/AC:L/Au:N/C:P/I:N/A:N - EPSS
- 0.84% chance of exploitation in the next 30 days, 55th percentile
- Published
- 2005-11-16
- Updated
- 2024-09-16