Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
BID:19841
Info
Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
| Bugtraq ID: | 19841 |
| Class: | Access Validation Error |
| CVE: |
CVE-2006-4620 |
| Remote: | Yes |
| Local: | No |
| Published: | Sep 04 2006 12:00AM |
| Updated: | Jul 05 2016 09:36PM |
| Credit: | TTG has been credited with the discovery of this vulnerability. |
| Vulnerable: |
Alt-N WebAdmin 3.2.5 Alt-N WebAdmin 3.0.4 Alt-N WebAdmin 3.0.3 Alt-N WebAdmin 3.0.2 Alt-N WebAdmin 2.0.5 Alt-N WebAdmin 2.0.4 Alt-N WebAdmin 2.0.3 Alt-N WebAdmin 2.0.2 Alt-N WebAdmin 2.0.1 Alt-N WebAdmin 2.0 .0 |
| Not Vulnerable: |
Alt-N WebAdmin 3.2.6 |
Discussion
Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
MDaemon WebAdmin component is prone to an unauthorized-access vulnerability.
A successful exploit would allow an attacker to gain access to the MDaemon account and potentially gain sensitive information; other attacks are also possible.
Versions prior to 3.2.6 are vulnerable to this issue.
MDaemon WebAdmin component is prone to an unauthorized-access vulnerability.
A successful exploit would allow an attacker to gain access to the MDaemon account and potentially gain sensitive information; other attacks are also possible.
Versions prior to 3.2.6 are vulnerable to this issue.
Exploit / POC
Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
Attackers can exploit this issue via a web client.
Attackers can exploit this issue via a web client.
Solution / Fix
Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
Solution:
The vendor has released an update to address this issue. Please see the references for more information.
Solution:
The vendor has released an update to address this issue. Please see the references for more information.
References
Alt-N MDaemon WebAdmin Component Unauthorized Access Vulnerability
References:
References: