CVE Vulnerabilities

CVE-2006-6997

Improper Authentication

Published: Feb 12, 2007 | Modified: Nov 21, 2024
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 leads to weakened authentication security with unknown impact and attack vectors. NOTE: due to lack of details, it is not clear whether this is the same as CVE-2006-1792.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Mailenable_enterprise Mailenable 1.0 (including) 1.0 (including)
Mailenable_enterprise Mailenable 1.00 (including) 1.00 (including)
Mailenable_enterprise Mailenable 1.1 (including) 1.1 (including)
Mailenable_enterprise Mailenable 1.01 (including) 1.01 (including)
Mailenable_enterprise Mailenable 1.02 (including) 1.02 (including)
Mailenable_enterprise Mailenable 1.2 (including) 1.2 (including)
Mailenable_enterprise Mailenable 1.03 (including) 1.03 (including)
Mailenable_enterprise Mailenable 1.04 (including) 1.04 (including)
Mailenable_standard Mailenable 1.71 (including) 1.71 (including)
Mailenable_standard Mailenable 1.72 (including) 1.72 (including)
Mailenable_standard Mailenable 1.701 (including) 1.701 (including)
Mailenable_standard Mailenable 1.702 (including) 1.702 (including)
Mailenable_standard Mailenable 1.703 (including) 1.703 (including)
Mailenable_standard Mailenable 1.704 (including) 1.704 (including)

Potential Mitigations

References