CVE-1999-1366

CVSS 2.0 Score 3.6 of 10 (low)

Details

Published May 15, 1999
Updated: Nov 20, 2024

Summary

CVE-1999-1366 is a vulnerability affecting Pegasus e-mail client versions 3.0 and earlier. The issue lies in the weak encryption used to store POP3 passwords in the pmail.ini file. This means that local users can decrypt the passwords with ease, gaining unauthorized access to e-mail accounts. This vulnerability poses a significant risk, as sensitive information can be compromised. Users are advised to upgrade to a more secure version of the Pegasus e-mail client or take other measures to protect their passwords.

Ligh bulbPrevent cyber attacks with Recorded Future by prioritizing and patching critical vulnerabilities being exploited by threat actors targeting your industry. Book your demo to learn more.

Share