Symantec Brightmail AntiSpam before 6.0.2 has a hard-coded database administrator password, which allows remote attackers to gain privileges.
https://exchange.xforce.ibmcloud.com/vulnerabilities/20804
http://www.vupen.com/english/advisories/2005/0671
http://securitytracker.com/id?1014088
http://securityresponse.symantec.com/avcenter/security/Content/2005.05.31a.html