CVE-2005-1516: High severity Netwin DMail vulnerability
Published May 11, 2005
·Updated
DList (dlist.exe) in DMail 3.1a allows remote attackers to bypass authentication, read log files, and shutdown the system via a sendlog command with an incorrect password hash, which is not properly handled by the cmdsendlog function.
Affected Software
1 affected component
Netwin DMail=3.1a
Event History
May 11, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-1516?
CVE-2005-1516 has a medium severity rating due to its potential to allow unauthorized access and system shutdown.
2
How do I fix CVE-2005-1516?
To fix CVE-2005-1516, you should upgrade to a newer version of DMail that addresses this vulnerability.
3
What vulnerabilities does CVE-2005-1516 exploit?
CVE-2005-1516 exploits insufficient handling of command authentication, allowing attackers to bypass security measures.
4
Who is affected by CVE-2005-1516?
CVE-2005-1516 affects users of DMail version 3.1a.
5
What are the consequences of CVE-2005-1516?
The consequences of CVE-2005-1516 include unauthorized access to log files and the ability to shut down the affected system.