MailEnable Professional prior to 1.78 provides a cleartext user password when an administrator edits the user's settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source.
Vulnerable Product | Search on Vulmon | Subscribe to Product |
---|---|---|
mailenable mailenable professional 1.73 |
||
mailenable mailenable professional 1.74 |
||
mailenable mailenable professional 1.7 |
||
mailenable mailenable professional 1.77 |
||
mailenable mailenable professional 1.71 |
||
mailenable mailenable professional 1.72 |
||
mailenable mailenable professional 1.75 |
||
mailenable mailenable professional 1.76 |