CVE Vulnerabilities

CVE-2006-6997

Improper Authentication

Published: Feb 12, 2007 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 leads to weakened authentication security with unknown impact and attack vectors. NOTE: due to lack of details, it is not clear whether this is the same as CVE-2006-1792.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

NameVendorStart VersionEnd Version
Mailenable_enterpriseMailenable1.0 (including)1.0 (including)
Mailenable_enterpriseMailenable1.00 (including)1.00 (including)
Mailenable_enterpriseMailenable1.1 (including)1.1 (including)
Mailenable_enterpriseMailenable1.01 (including)1.01 (including)
Mailenable_enterpriseMailenable1.02 (including)1.02 (including)
Mailenable_enterpriseMailenable1.2 (including)1.2 (including)
Mailenable_enterpriseMailenable1.03 (including)1.03 (including)
Mailenable_enterpriseMailenable1.04 (including)1.04 (including)
Mailenable_standardMailenable1.71 (including)1.71 (including)
Mailenable_standardMailenable1.72 (including)1.72 (including)
Mailenable_standardMailenable1.701 (including)1.701 (including)
Mailenable_standardMailenable1.702 (including)1.702 (including)
Mailenable_standardMailenable1.703 (including)1.703 (including)
Mailenable_standardMailenable1.704 (including)1.704 (including)

Potential Mitigations

References