Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Vista

E-Post MailServer Remote Information Disclosure Vulnerability

E-Post MailServer is prone to a remote information-disclosure vulnerability.

Exploiting this issue can allow remote attackers to obtain the POP3 password of any known user from the POP3 service without having to log on. For an exploit to succeed, the attacker must know the POP3 account name (email address) of the victim.

The issue affects E-Post Mail Server 4.10 with EPSTPOP3S.EXE 4.22; other versions may also be affected.







 

Privacy Statement
Copyright 2008, SecurityFocus