In a few clicks we can analyze your entire application and see what components are vulnerable in your application, and suggest you quick fixes.
Test your applicationsLearn about Authorization Bypass Through User-Controlled Key vulnerabilities in an interactive lesson.
Start learningUpgrade froxlor/froxlor to version 2.3.7 or higher.
froxlor/froxlor is a server administration software.
Affected versions of this package are vulnerable to Authorization Bypass Through User-Controlled Key in the customer_email.php process. An attacker can access other users' allowed sender aliases by supplying arbitrary senderid values in the delete-confirmation page, which causes the system to disclose sender alias information belonging to other customers.