Mail Notification CVE-2007-3209 Information Disclosure Vulnerability

Mail Notification is prone to a information disclosure vulnerability. Mail Notification 4.0, when WITH_SSL is set to 0 at compile time, uses unencrypted connections for accounts configured with SSL/TLS, which allows remote attackers to obtain sensitive information by sniffing the network.


 

Privacy Statement
Copyright 2010, SecurityFocus