Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
SqWebMail认证应答信息泄漏漏洞
Vulnerability Description
Inter7 SqWebMail 3.4.1 至3.6.1根据non-mail-enabled账户(比如根)密码的不正确的与正确产生不同的错误消息 ,远程攻击者借助蛮力攻击猜测根密码。
CVSS Information
N/A
Vulnerability Type
N/A