CVE-2008-3729

MicroWorld Technologies MailScan <5.6.a - Auth Bypass

Title source: llm

Description

Web Based Administration in MicroWorld Technologies MailScan 5.6.a espatch 1 allows remote attackers to bypass authentication and obtain administrative access via a direct request with (1) an IsAdmin=true cookie value or (2) no cookie.

Scores

EPSS 0.0066
EPSS Percentile 70.8%

Classification

CWE
CWE-287
Status draft

Affected Products (1)

microworld_technologies/mailscan

Timeline

Published Aug 20, 2008
Tracked Since Feb 18, 2026