Vulnerabilities > CVE-1999-1366 - Unspecified vulnerability in David Harris Pegasus Mail

047910
CVSS 3.6 - LOW
Attack vector
LOCAL
Attack complexity
LOW
Privileges required
NONE
Confidentiality impact
PARTIAL
Integrity impact
PARTIAL
Availability impact
NONE
local
low complexity
david-harris

Summary

Pegasus e-mail client 3.0 and earlier uses weak encryption to store POP3 passwords in the pmail.ini file, which allows local users to easily decrypt the passwords and read e-mail.

Vulnerable Configurations

Part Description Count
Application
David_Harris
1