CVE-2005-2160: High severity ipswitch imail vulnerability
Published Jul 6, 2005
·Updated
IMail stores usernames and passwords in cleartext in a cookie, which allows remote attackers to obtain sensitive information.
Affected Software
1 affected component
Ipswitch IMail=2006
Event History
Jul 6, 2005
CVE Published
04:00 AM
CVE Published
via MITRE·08:00 AM
Data Sourced
via MITRE·08:00 AM
Description
Frequently Asked Questions
1
What is the severity of CVE-2005-2160?
CVE-2005-2160 is classified as a medium severity vulnerability due to its potential to expose sensitive user information.
2
How do I fix CVE-2005-2160?
To fix CVE-2005-2160, it is recommended to upgrade to a version of IMail that does not store usernames and passwords in cleartext.
3
What type of information is exposed in CVE-2005-2160?
CVE-2005-2160 exposes usernames and passwords stored in cleartext, allowing attackers to access sensitive user credentials.
4
Which software versions are affected by CVE-2005-2160?
CVE-2005-2160 affects IPSWITCH IMail version 2006.
5
Who is at risk from CVE-2005-2160?
Users of IPSWITCH IMail version 2006 are at risk of having their credentials compromised due to CVE-2005-2160.