Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-99cm-v3cq-wf9j

Опубликовано: 30 апр. 2022
Источник: github
Github: Не прошло ревью

Описание

Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue network share, which has insecure default permissions, allowing remote attackers to read the passwords and gain privileges.

Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue network share, which has insecure default permissions, allowing remote attackers to read the passwords and gain privileges.

EPSS

Процентиль: 75%
0.00915
Низкий

Связанные уязвимости

nvd
почти 26 лет назад

Direct Mailer feature in Microsoft Site Server 3.0 saves user domain names and passwords in plaintext in the TMLBQueue network share, which has insecure default permissions, allowing remote attackers to read the passwords and gain privileges.

EPSS

Процентиль: 75%
0.00915
Низкий