Description
One of the web-mail accounts is using a weak password. Acunetix was able to guess the credentials required to access the service. A weak password is short, common, a system default, or something that could be rapidly guessed by executing a brute force attack using a subset of all possible passwords, such as words in the dictionary, proper names, words based on the user name or common variations on these themes.
Remediation
Enforce a strong password policy. Don't permit weak passwords or passwords based on dictionary words.
References
Related Vulnerabilities
Joomla! Core 3.x.x Information Disclosure (3.4.0 - 3.6.5)
WordPress Plugin GiveWP-Donation and Fundraising Platform Information Disclosure (2.20.2)
WordPress Plugin Backup Migration Information Disclosure (1.3.5)
WordPress Plugin IgniteUp-Coming Soon and Maintenance Mode Multiple Vulnerabilities (3.4)
WordPress Plugin DZS Video Gallery Information Disclosure (3.1.3)