PT-2000-1704 · Tumbleweed · Tumbleweed Messaging Management System

Published

2000-10-20

·

Updated

2017-12-19

·

CVE-2000-0772

CVSS v2.0

7.5

High

VectorAV:N/AC:L/Au:N/C:P/I:P/A:P
Name of the Vulnerable Software and Affected Versions Tumbleweed Messaging Management System (MMS) versions 4.6 and earlier
Description The installation of the system creates a default account sa with no password.
Recommendations For versions 4.6 and earlier, change the password of the default sa account immediately after installation to prevent unauthorized access.

Fix

Found an issue in the description? Have something to add? Feel free to write us 👾

Related Identifiers

CVE-2000-0772

Affected Products

Tumbleweed Messaging Management System