Search: Home Bugtraq Vulnerabilities Mailing Lists Jobs Tools Beta Programs

Mailtraq User Password Encoding Weakness

Solution:
It has been reported that the vendor has stated the following:

"With respect to password encoding: weak password encryption was chosen as the objective is simply to obscure the information from the casual reader.

It is worth noting that by default .cfg files are excluded in the new Web Server."

This information has not been confirmed.

Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>.








 

Privacy Statement
Copyright 2009, SecurityFocus