VYPR
Unrated severityNVD Advisory· Published May 2, 2005· Updated Apr 16, 2026

CVE-2005-0322

CVE-2005-0322

Description

MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 and Mail Server 7.6.4r with Icewarp Mail Server 5.3.2 uses weak encryption in the (1) users.cfg, (2) settings.cfg, (3) users.dat or (4) user.dat files, which allows local users to extract the passwords.

Affected products

4
  • IceWarp/Web Mail2 versions
    cpe:2.3:a:icewarp:web_mail:5.3.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:icewarp:web_mail:5.3.0:*:*:*:*:*:*:*
    • cpe:2.3:a:icewarp:web_mail:5.3.2:*:*:*:*:*:*:*
  • Merak/Mail Server2 versions
    cpe:2.3:a:merak:mail_server:7.6.0:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:a:merak:mail_server:7.6.0:*:*:*:*:*:*:*
    • cpe:2.3:a:merak:mail_server:7.6.4r:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

2

News mentions

0

No linked articles in our index yet.