Symatec Popper_Mod Default Administrative Access Vulnerability
BID:4412
Info
Symatec Popper_Mod Default Administrative Access Vulnerability
| Bugtraq ID: | 4412 |
| Class: | Configuration Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Mar 20 2002 12:00AM |
| Updated: | Mar 20 2002 12:00AM |
| Credit: | Published by <[email protected]>. |
| Vulnerable: |
Symatec popper_mod 1.2.1 Symatec popper_mod 1.2 Symatec popper_mod 1.0 |
| Not Vulnerable: |
Symatec popper_mod 1.2.3 Symatec popper_mod 1.2.2 |
Discussion
Symatec Popper_Mod Default Administrative Access Vulnerability
popper_mod is a POP3 email client implemented in PHP. It provides a web based front end, and may be installed under Windows, Linux or most Unix based operating systems.
A vulnerability has been reported in some versions of popper_mod. Under the default installation, public access is granted to the administration pages.
popper_mod is a POP3 email client implemented in PHP. It provides a web based front end, and may be installed under Windows, Linux or most Unix based operating systems.
A vulnerability has been reported in some versions of popper_mod. Under the default installation, public access is granted to the administration pages.
Exploit / POC
Symatec Popper_Mod Default Administrative Access Vulnerability
No exploit is required.
No exploit is required.
References
Symatec Popper_Mod Default Administrative Access Vulnerability
References:
References:
- popper_mod Forums Page (Symatec)