Security Advisory
CVE-2001-0990
CVE vulnerability detail - eXtreme Datacenter Security Operations
Description
Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into the libvpopmail.a library, which allows local users to obtain the MySQL username and password by inspecting the vpopmail programs that use the library.