Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:23058
HistoryApr 10, 2020 - 12:14 a.m.

Information Disclosure

2020-04-1000:14:27
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
11

EPSS

0.088

Percentile

94.6%

fetchmail is vulnerable to information disclosure. A flaw was found in the way fetchmail processed certain APOP authentication requests. By sending certain responses when fetchmail attempted to authenticate against an APOP server, a remote attacker could potentially acquire certain portions of a user’s authentication credentials.

References