Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
The APOP protocol allows remote attackers to guess the first 3 characters of a password via man-in-the-middle (MITM) attacks that use crafted message IDs and MD5 collisions. NOTE: this design-level issue potentially affects all products that use APOP, including (1) Thunderbird 1.x before 1.5.0.12 and 2.x before 2.0.0.4, (2) Evolution, (3) mutt, (4) fetchmail before 6.3.8, (5) SeaMonkey 1.0.x before 1.0.9 and 1.1.x before 1.1.2, (6) Balsa 2.3.16 and earlier, (7) Mailfilter before 0.8.2, and possibly other products.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
APOP协议不安全MD5无用信息缺陷设计错误漏洞
Vulnerability Description
APOP协议中存在设计错误漏洞。远程攻击者可借助使用特制消息IDs和MD5冲突的中间人(MITM)攻击,猜测出密码的前三个字符。
CVSS Information
N/A
Vulnerability Type
N/A