Cleartext Authentication Information Exposure in Inter7 vpopmail 4.10.35 and Earlier

Cleartext Authentication Information Exposure in Inter7 vpopmail 4.10.35 and Earlier

CVE-2001-0990 · MEDIUM Severity

AV:L/AC:L/AU:N/C:P/I:P/A:P

Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into the libvpopmail.a library, which allows local users to obtain the MySQL username and password by inspecting the vpopmail programs that use the library.

Learn more about our Cis Benchmark Audit For Microsoft Sql Server.