PHlyMail Unspecified Authentication Bypass Vulnerability
BID:14537
Info
PHlyMail Unspecified Authentication Bypass Vulnerability
| Bugtraq ID: | 14537 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Aug 10 2005 12:00AM |
| Updated: | Aug 10 2005 12:00AM |
| Credit: | The vendor has disclosed this vulnerability. |
| Vulnerable: |
PHlyMail PHlyMail 3.0.2 .00 |
| Not Vulnerable: |
PHlyMail PHlyMail 3.0.2 .01 |
Discussion
PHlyMail Unspecified Authentication Bypass Vulnerability
PHlyMail is prone to an unspecified authentication bypass vulnerability. The cause of this issue was not specified.
A successful attack can allow unauthorized attackers to bypass the authentication routines and gain access to the application. An attacker may then carry out other attacks against the vulnerable computer.
PHlyMail is prone to an unspecified authentication bypass vulnerability. The cause of this issue was not specified.
A successful attack can allow unauthorized attackers to bypass the authentication routines and gain access to the application. An attacker may then carry out other attacks against the vulnerable computer.
Exploit / POC
PHlyMail Unspecified Authentication Bypass Vulnerability
An exploit is not required.
An exploit is not required.
Solution / Fix
PHlyMail Unspecified Authentication Bypass Vulnerability
Solution:
The vendor has released version 3.02.01 to rectify this issue.
PHlyMail PHlyMail 3.0.2 .00
Solution:
The vendor has released version 3.02.01 to rectify this issue.
PHlyMail PHlyMail 3.0.2 .00
-
PHlyMail phmmc_lite_30201.zip
http://phlymail.de/download/PHlyMail_Lite/phmmc_lite_30201.zip
References
PHlyMail Unspecified Authentication Bypass Vulnerability
References:
References:
- SQL-Ledger Web Site (SQL-Ledger)