Vulnerabilities > CVE-2004-2313 - Unspecified vulnerability in Inter7 Sqwebmail
Attack vector
NETWORK Attack complexity
LOW Privileges required
NONE Confidentiality impact
PARTIAL Integrity impact
NONE Availability impact
NONE Summary
Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.
Vulnerable Configurations
Part | Description | Count |
---|---|---|
Application | 7 |