PieterPost Unauthorized E-mail Account Access Vulnerability
BID:9128
Info
PieterPost Unauthorized E-mail Account Access Vulnerability
| Bugtraq ID: | 9128 |
| Class: | Access Validation Error |
| CVE: | |
| Remote: | Yes |
| Local: | No |
| Published: | Nov 29 2003 12:00AM |
| Updated: | Nov 29 2003 12:00AM |
| Credit: | This issue was disclosed by [email protected]. |
| Vulnerable: |
PieterPost PieterPost 0.10.6 |
| Not Vulnerable: | |
Discussion
PieterPost Unauthorized E-mail Account Access Vulnerability
PieterPost has been reported prone to a vulnerability that is said to grant unauthorized users access as the 'virtual' user. It is said that this access may allow an attacker to send arbitrary e-mail messages from the account.
Exploitation of this issue could be used by spammers or malicious persons wishing to carry e-mail based out actions with a concealed source.
PieterPost has been reported prone to a vulnerability that is said to grant unauthorized users access as the 'virtual' user. It is said that this access may allow an attacker to send arbitrary e-mail messages from the account.
Exploitation of this issue could be used by spammers or malicious persons wishing to carry e-mail based out actions with a concealed source.
Exploit / POC
PieterPost Unauthorized E-mail Account Access Vulnerability
No exploit is required.
No exploit is required.
Solution / Fix
PieterPost Unauthorized E-mail Account Access Vulnerability
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
Solution:
Currently we are not aware of any vendor-supplied patches for this issue. If you feel we are in error or are aware of more recent information, please mail us at: [email protected] <mailto:[email protected]>.
References
PieterPost Unauthorized E-mail Account Access Vulnerability
References:
References:
- PieterPost (PieterPost)
- Pieterpost - access to "vitual" account ([email protected] )