CVE Vulnerabilities

CVE-2006-6997

Improper Authentication

Published: Feb 12, 2007 | Modified: Sep 05, 2008
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
10 HIGH
AV:N/AC:L/Au:N/C:C/I:C/A:C
RedHat/V2
RedHat/V3
Ubuntu

Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enterprise Edition before 1.21 leads to weakened authentication security with unknown impact and attack vectors. NOTE: due to lack of details, it is not clear whether this is the same as CVE-2006-1792.

Weakness

When an actor claims to have a given identity, the product does not prove or insufficiently proves that the claim is correct.

Affected Software

Name Vendor Start Version End Version
Mailenable_enterprise Mailenable 1.1 1.1
Mailenable_enterprise Mailenable 1.04 1.04
Mailenable_standard Mailenable 1.71 1.71
Mailenable_standard Mailenable 1.701 1.701
Mailenable_enterprise Mailenable 1.0 1.0
Mailenable_enterprise Mailenable 1.02 1.02
Mailenable_standard Mailenable 1.703 1.703
Mailenable_standard Mailenable 1.704 1.704
Mailenable_standard Mailenable 1.702 1.702
Mailenable_enterprise Mailenable 1.01 1.01
Mailenable_enterprise Mailenable 1.00 1.00
Mailenable_enterprise Mailenable 1.03 1.03
Mailenable_standard Mailenable 1.72 1.72
Mailenable_enterprise Mailenable 1.2 1.2

Potential Mitigations

References