The default configuration of NetWin dMailWeb and cwMail trusts all POP servers, which allows attackers to bypass normal authentication and cause a denial of service.
| Name | Vendor | Start Version | End Version |
|---|---|---|---|
| Cwmail | Netwin | 2.6g (including) | 2.6g (including) |
| Dmailweb | Netwin | 2.6g (including) | 2.6g (including) |