Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
BID:20506
Info
Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
| Bugtraq ID: | 20506 |
| Class: | Unknown |
| CVE: |
CVE-2006-7111 |
| Remote: | Yes |
| Local: | No |
| Published: | Oct 13 2006 12:00AM |
| Updated: | Jul 06 2016 02:40PM |
| Credit: | Yutaka Kokubu is credited with the discovery of this vulnerability. |
| Vulnerable: |
Futomi's CGI Cafe KMail CGI 1.0.3 Futomi's CGI Cafe KMail CGI 1.0.2 Futomi's CGI Cafe KMail CGI 1.0.1 |
| Not Vulnerable: |
Futomi's CGI Cafe KMail CGI 1.0.4 |
Discussion
Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
Kmail CGI is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to obtain sensitive information and delete emails; other attacks are also possible.
Versions prior to 1.0.4 are vulnerable to this issue.
Kmail CGI is prone to an authentication-bypass vulnerability.
An attacker can exploit this issue to obtain sensitive information and delete emails; other attacks are also possible.
Versions prior to 1.0.4 are vulnerable to this issue.
Exploit / POC
Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
Attackers can exploit this issue via a web client.
Attackers can exploit this issue via a web client.
Solution / Fix
Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
Solution:
The vendor has released an update to address this issue. Please contact the vendor for information on how to obtain and apply this update.
Solution:
The vendor has released an update to address this issue. Please contact the vendor for information on how to obtain and apply this update.
References
Kmail CGI Unspecified Remote Authentication Bypass Vulnerability
References:
References:
- Vendor Home Page (Futomi)
- Futomi Kmail CGI Security Advisory (Futomi CGI Cafe )