Vulnerability Details CVE-2005-0322
MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 and Mail Server 7.6.4r with Icewarp Mail Server 5.3.2 uses weak encryption in the (1) users.cfg, (2) settings.cfg, (3) users.dat or (4) user.dat files, which allows local users to extract the passwords.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.0
EPSS Ranking 10.2%
CVSS Severity
CVSS v2 Score 7.2
Products affected by CVE-2005-0322
-
cpe:2.3:a:icewarp:web_mail:5.3.0
-
cpe:2.3:a:icewarp:web_mail:5.3.2
-
cpe:2.3:a:merak:mail_server:7.6.0
-
cpe:2.3:a:merak:mail_server:7.6.4r