CVE-2004-2298
Last modified
CVE-2004-2298 is a vulnerability of currently unknown severity. Novell Internet Messaging System (NIMS) 2.6 and 3.0, and NetMail 3.1 and 3.5, is installed with a default NMAP authentication credential, which allows remote attackers to read and write mail store data if the administrator does not change the credential by using the NMAP Credential Generator.. EPSS estimates a 1.51% chance of exploitation in the next 30 days.
Description
Novell Internet Messaging System (NIMS) 2.6 and 3.0, and NetMail 3.1 and 3.5, is installed with a default NMAP authentication credential, which allows remote attackers to read and write mail store data if the administrator does not change the credential by using the NMAP Credential Generator.
Metrics
Affected Software
| Vendor | Product | Versions |
|---|---|---|
| Novell | Internet Messaging System | 2.6 |
| Novell | Internet Messaging System | 3.0 |
| Novell | Netmail | 3.1 |
| Novell | Netmail | 3.5 |
References
- http://secunia.com/advisories/13377Patch, Vendor Advisory
- http://secunia.com/advisories/13377Patch, Vendor Advisory
Timeline
- Published
- Last Modified
- Status
- Modified
Frequently Asked Questions
What is CVE-2004-2298?
How severe is CVE-2004-2298?
How do I fix CVE-2004-2298?
Are you affected by CVE-2004-2298?
Run a free Strix scan to check your systems for this vulnerability.
Scan your code nowSource: NVD / NIST
