CVE-2024-55196

Insufficiently Protected Credentials in the Mail Server Configuration in GoPhish v0.12.1 allows an attacker to access cleartext passwords for the configured IMAP and SMTP servers.
Configurations

No configuration.

History

02 Jan 2025, 20:16

Type Values Removed Values Added
CVSS v2 : unknown
v3 : unknown
v2 : unknown
v3 : 7.5
Summary
  • (es) Las credenciales insuficientemente protegidas en Mail Server Configuration en GoPhish v0.12.1 permiten a un atacante acceder a las contraseñas de texto plano de los servidores IMAP y SMTP configurados.
CWE CWE-312

19 Dec 2024, 19:15

Type Values Removed Values Added
New CVE

Information

Published : 2024-12-19 19:15

Updated : 2025-01-02 20:16


NVD link : CVE-2024-55196

Mitre link : CVE-2024-55196

CVE.ORG link : CVE-2024-55196


JSON object : View

Products Affected

No product.

CWE
CWE-312

Cleartext Storage of Sensitive Information