POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks.
Link | Tags |
---|---|
https://exchange.xforce.ibmcloud.com/vulnerabilities/5363 | vdb entry |
http://www.securityfocus.com/bid/1792 | exploit vdb entry vendor advisory |
http://www.securityfocus.com/archive/1/139523 | mailing list vendor advisory |