Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2004-2313

Опубликовано: 31 дек. 2004
Источник: debian

Описание

Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
courierfixed0.44.2-1package

Примечания

  • This is a lack of a security feature, but not a direct vulnerability

  • https://github.com/svarshavchik/courier/issues/61

Связанные уязвимости

nvd
почти 21 год назад

Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.

github
больше 3 лет назад

Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.