CVE Vulnerabilities

CVE-2006-4620

Published: Sep 07, 2006 | Modified: Oct 17, 2018
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:N/AC:H/Au:S/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu

The useredit_account.wdm module in Alt-N WebAdmin 3.2.5 running with MDaemon 9.0.6, and possibly earlier versions, allows remote authenticated domain administrators to gain privileges and obtain access to the system mail queue by modifying the mailbox of the MDaemon user account to use the mailbox of another account.

Affected Software

Name Vendor Start Version End Version
Webadmin Alt-n * 3.2.5 (including)
Webadmin Alt-n 3.0.2 (including) 3.0.2 (including)
Webadmin Alt-n 3.0.3 (including) 3.0.3 (including)
Webadmin Alt-n 3.2.3 (including) 3.2.3 (including)
Webadmin Alt-n 3.2.4 (including) 3.2.4 (including)

References