The useredit_account.wdm module in Alt-N WebAdmin 3.2.5 running with MDaemon...
Vulnerability Description
The useredit_account.wdm module in Alt-N WebAdmin 3.2.5 running with MDaemon 9.0.6, and possibly earlier versions, allows remote authenticated domain administrators to gain privileges and obtain access to the system mail queue by modifying the mailbox of the MDaemon user account to use the mailbox of another account.
Impact Analysis
Refer to official advisory for detailed impact metrics.
Remediation
Ensure systems are updated to the latest vendor-supplied patch levels.
Am I Vulnerable?
Launch our assessment wizard to check if your infrastructure is exposed to • CVE-2006-4620
Credits & Attribution
No credits recorded in the NVD database.
References
- http://www.securityfocus.com/archive/1/445153/100/0/threaded
- http://www.osvdb.org/28548
- http://secunia.com/advisories/21727
- http://www.teklow.com/advisories/TTG0602.txt
- http://files.altn.com/WebAdmin/Release/RelNotes_en.txt
- https://exchange.xforce.ibmcloud.com/vulnerabilities/28776
- http://securityreason.com/securityalert/1516
More from alt-n
View All →Affected Vendor
alt-n
View all reports →Affected Software
Timeline
CVSS Vectors
Weaknesses (CWE)
No CWE data available
MITRE ATT&CK TTPs
No associated TTPs found for this vulnerability.