积极预防 及时发现
快速响应 力保恢复
在Stalker CommuniGate Pro 3.3.2中的POP3后台程序对无效的用户名和无效...
发布时间:2002-05-20 信息来源:管理员

CNCVE编号:CNCVE-20001002 CVE编号:CVE-2000-1002 安全级别:中 漏洞中文描述: 在Stalker CommuniGate Pro 3.3.2中的POP3后台程序对无效的用户名和无效的口令生成不同的错误消息,这样导致远程攻击者可以在需要进行SPAM攻击的服务器上,获得有效的电子邮件地址。 漏洞英文描述: POP3 daemon in Stalker CommuniGate Pro 3.3.2 generates different error messages for invalid usernames versus invalid passwords, which allows remote attackers to determine valid email addresses on the server for SPAM attacks. 漏洞参考: 系统类型:其他 漏洞类型:其他