|
Mailtraq User Password Encoding Weakness
Solution: It has been reported that the vendor has stated the following: "With respect to password encoding: weak password encryption was chosen as the objective is simply to obscure the information from the casual reader. It is worth noting that by default .cfg files are excluded in the new Web Server." This information has not been confirmed. Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: vuldb@securityfocus.com <mailto:vuldb@securityfocus.com>. |
|
|
Privacy Statement |