AUGUST 4, 2026
Live Feed
Back to database
Case File

CVE-2002-0258

HIGH · CVSS 7.5 EPSS 1.37%

Source: NVD + CISA KEV + EPSS (historical backfill) · Published 2002-05-29 · Last synced 2026-08-04

CyberRota Analysis

This is a high severity vulnerability with a CVSS score of 7.5. It may be remotely exploitable.

CVE
CVE-2002-0258
Severity
HIGH
CVSS
7.5
EPSS
1.37%

Original NVD Description

Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that user, e.g. by extracting the ID from the user's answer or forward URLs.