CVE-2007-1137
Published Mar 2, 2007
Last updated 7 years ago
Overview
- Description
- putmail.py in Putmail before 1.4 does not detect when a user attempts to use TLS with a server that does not support it, which causes putmail.py to send the username and password in plaintext while the user believes encryption is in use, and allows remote attackers to obtain sensitive information.
- Source
- cve@mitre.org
- NVD status
- Modified
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 5
- Impact score
- 2.9
- Exploitability score
- 10
- Vector string
- AV:N/AC:L/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- NVD-CWE-Other
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:sourceforge:putmail:.8:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "BBF851EB-DC73-443A-A625-A4292771FB90" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:.9:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "0BA6CB59-D95C-47A2-ACC9-14BB2D92639E" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:.10:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FC99984C-6C85-4986-862F-CFDC84A9D5A8" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:.11:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "07DE10FF-16DA-40F8-9031-D72BC905104D" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:.12:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "DFE101A4-F493-432A-9C31-F1BCD24DE395" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:1.0:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "EE275818-D670-4C91-9AF3-2D200A3E11C3" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:1.1:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AC657DB2-E823-4736-87C0-30724321106D" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:1.2:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "4141D1B3-CF42-4261-B203-869FECF6A01E" }, { "criteria": "cpe:2.3:a:sourceforge:putmail:1.3:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "CA777BFE-0186-48D7-A66B-D516718B9CF8" } ], "operator": "OR" } ] } ]