Goal Reached Thanks to every supporter — we hit 100%!

Goal: 1000 CNY · Raised: 1000 CNY

100.0%

CVE-2005-3088

EPSS 0.09% · P26
Get alerts for future matching vulnerabilitiesLog in to subscribe

I. Basic Information for CVE-2005-3088

Vulnerability Information

Have questions about the vulnerability? See if Shenlong's analysis helps!
View Shenlong Deep Dive ↗

Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.

Vulnerability Title
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Description
fetchmailconf before 1.49 in fetchmail 6.2.0, 6.2.5 and 6.2.5.2 creates configuration files with insecure world-readable permissions, which allows local users to obtain sensitive information such as passwords.
Source: NVD (National Vulnerability Database)
CVSS Information
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Type
N/A
Source: NVD (National Vulnerability Database)
Vulnerability Title
fetchmail口令泄露漏洞
Source: CNNVD (China National Vulnerability Database)
Vulnerability Description
fetchmail是用于从远程POP2、POP3、IMAP、ETRN或ODMR服务器检索邮件并将其转发给本地SMTP、LMTP服务器或消息传输代理的软件包。 fetchmailconf工具程序写配置文件的方式存在漏洞,本地攻击者可能利用此漏洞获取访问口令。 fetchmailconf默认的行为是写出短期内完全可读的配置文件。在fetchmailconf设置安全的权限之前,这个配置文件可能在很短的窗口中为本地恶意攻击者提供口令。
Source: CNNVD (China National Vulnerability Database)
CVSS Information
N/A
Source: CNNVD (China National Vulnerability Database)
Vulnerability Type
N/A
Source: CNNVD (China National Vulnerability Database)

Affected Products

VendorProductAffected VersionsCPESubscribe
-n/a n/a -

II. Public POCs for CVE-2005-3088

#POC DescriptionSource LinkShenlong Link
AI-Generated POCPremium

No public POC found.

Login to generate AI POC

III. Intelligence Information for CVE-2005-3088

登录查看更多情报信息。

Same Patch Batch · n/a · 2005-10-27 · 38 CVEs total

CVE-2005-3331MGDiff 不安全临时文件创建漏洞
CVE-2005-3322SUSE Linux Squid Proxy SSL处理拒绝服务漏洞
CVE-2005-3323Zope RestructuredText文件包含漏洞
CVE-2005-3324MWChat Chat.PHP SQL注入漏洞
CVE-2005-3325Basic Analysis And Security Engine Base_qry_main.PHP SQL 注入漏洞
CVE-2005-3326MyBulletinBoard Usercp.PHP SQL注入漏洞
CVE-2005-3327Network Appliance iSCSI认证绕过漏洞
CVE-2005-3328PunBB 'common.php'远程文件包含漏洞
CVE-2005-3329RSA ACE代理和认证代理图形跨站脚本漏洞
CVE-2005-3330Snoopy任意命令执行漏洞
CVE-2005-3321SUSE Linux Permissions软件包CHKSTAT不安全权限处理漏洞
CVE-2005-3332Belchior Foundry VCard远程文件包含漏洞
CVE-2005-3333eBASEweb未明SQL注入漏洞
CVE-2005-3334Flyspray多个跨站脚本攻击漏洞
CVE-2005-3335Mantis bug_sponsorship_list_view_inc.php远程文件包含漏洞
CVE-2005-3336Mantis未知SQL注入漏洞
CVE-2005-3337Mantis javascript 跨站脚本漏洞
CVE-2005-3338Mantis Email 地址泄露漏洞
CVE-2005-3339Mantis User Id 长度缓存漏洞
CVE-2005-3248Ethereal服务位置协议处理栈溢出漏洞

Showing top 20 of 38 CVEs. View all on vendor page → →

IV. Related Vulnerabilities

V. Comments for CVE-2005-3088

No comments yet


Leave a comment