Welcome to the MacNN Forums.

If this is your first visit, be sure to check out the FAQ by clicking the link above. You may have to register before you can post: click the register link above to proceed. To start viewing messages, select the forum that you want to visit from the selection below.

You are here: MacNN Forums > Software - Troubleshooting and Discussion > macOS > Webmail security vulnerability

Webmail security vulnerability
Thread Tools
theolein
Addicted to MacNN
Join Date: Feb 2001
Location: zurich, switzerland
Status: Offline
Reply With Quote
Jul 25, 2002, 09:24 AM
 
Webmail has a vulnerability. This was just reported over at /. The URLs to specific email messages in a specific account are absolute, which means that anyone can access them, with or without access. The possible exploit happens when you send [email protected] an email with a link in it to a website somewhere. On that website, the admin or whoever has access to the referrer logs sees the exact URL to the email message and by playing around can read others as well. To be fair the webmail URL's do time out after some minutes so there shoun't be too many of you getting strange mails with links to my server <img border="0" title="" alt="[Wink]" src="wink.gif" />

Apple you bunch of d�cksh�t clowns, wake the fu�k up. I apologise in advance for insulting you like this, but this is very basic web security. On top of this this is almost *exactly* the same vulnerability as Hotmail had last year, which was exploited by every tom, d�ck and harry from here to Tapei (I caught some little bugger from Taipei reading my hotmail, after which he forwarded the address on to about 15 different spammers)

<small>[ 07-25-2002, 09:24 AM: Message edited by: theolein ]</small>
weird wabbit
     
   
 
Forum Links
Forum Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts
BB code is On
Smilies are On
[IMG] code is On
HTML code is Off
Top
Privacy Policy
All times are GMT -4. The time now is 06:32 PM.
All contents of these forums © 1995-2017 MacNN. All rights reserved.
Branding + Design: www.gesamtbild.com
vBulletin v.3.8.8 © 2000-2017, Jelsoft Enterprises Ltd.,