CVE-2005-3532

Source
https://nvd.nist.gov/vuln/detail/CVE-2005-3532
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2005-3532.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2005-3532
Downstream
Published
2005-12-11T01:03:00Z
Modified
2025-08-09T19:01:29Z
Summary
[none]
Details

authpam.c in courier-authdaemon for Courier Mail Server 0.37.3 through 0.52.1, when using pamtally, does not call the pamacct_mgmt function to verify that access should be granted, which allows attackers to authenticate to the server using accounts that have been disabled.

References

Affected packages