{"id":"CVE-2004-2313","details":"Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts (such as root), which allows remote attackers to guess the root password via brute force attacks.","modified":"2026-04-10T03:36:41.778265Z","published":"2004-12-31T05:00:00Z","references":[{"type":"WEB","url":"http://www.securityfocus.com/archive/1/352317"},{"type":"WEB","url":"http://www.securityfocus.com/bid/9541"},{"type":"WEB","url":"https://exchange.xforce.ibmcloud.com/vulnerabilities/15058"}],"schema_version":"1.7.5"}