CVE-2020-7918
EUVD-2020-2885027.03.2020, 14:15
An insecure direct object reference in webmail in totemo totemomail 7.0.0 allows an authenticated remote user to read and modify mail folder names of other users via enumeration.Enginsight
Affected Products (NVD)
| Vendor | Product | Version |
|---|---|---|
| totemo | totemomail | 7.0.0 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration