CVE-2004-2337

Severity CVSS v4.0:
Pending analysis
Type:
Unavailable / Other
Publication date:
31/12/2004
Last modified:
11/07/2017

Description

The /.inlook/.crypt file for inlook 0.7.3 and earlier is installed with world readable permissions, which allows local users to obtain user POP3 credentials.

Vulnerable products and versions

CPE From Up to
cpe:2.3:a:inlook:inlook:0.6.0:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.1:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.2:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.3:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.4:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.5:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.6:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.7:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.8:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.9:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.10.0:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.11:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.12:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.13:*:*:*:*:*:*:*
cpe:2.3:a:inlook:inlook:0.6.14:*:*:*:*:*:*:*