Vulnerability Database

290,020

Total vulnerabilities in the database

CVE-2000-0716

WorldClient email client in MDaemon 2.8 includes the session ID in the referer field of an HTTP request when the user clicks on a URL, which allows the visited web site to hijack the session ID and read the user's email.

  • Published: Oct 20, 2000
  • Updated: Apr 13, 2023
  • CVE: CVE-2000-0716
  • Severity: Low
  • Exploit:

CVSS v2:

  • Severity: Low
  • Score: 2.6
  • AV:N/AC:H/Au:N/C:P/I:N/A:N

No CWE or OWASP classifications available.