VYPR
Unrated severityNVD Advisory· Published Jan 29, 2007· Updated Apr 23, 2026

CVE-2006-6964

CVE-2006-6964

Description

MailEnable Professional before 1.78 provides a cleartext user password when an administrator edits the user's settings, which allows remote authenticated administrators to obtain sensitive information by viewing the HTML source.

Affected products

8
  • cpe:2.3:a:mailenable:mailenable_professional:1.7:*:*:*:*:*:*:*+ 7 more
    • cpe:2.3:a:mailenable:mailenable_professional:1.7:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.71:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.72:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.73:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.74:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.75:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.76:*:*:*:*:*:*:*
    • cpe:2.3:a:mailenable:mailenable_professional:1.77:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

3

News mentions

0

No linked articles in our index yet.