Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2008-1218

Опубликовано: 10 мар. 2008
Источник: debian
EPSS Средний

Описание

Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
dovecotfixed1:1.0.13-1package
dovecotnot-affectedetchpackage
dovecotnot-affectedsargepackage

Примечания

  • exploitable through code introduced in 1.0.11

  • http://www.dovecot.org/list/dovecot-news/2008-March/000064.html

EPSS

Процентиль: 95%
0.18733
Средний

Связанные уязвимости

ubuntu
почти 18 лет назад

Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.

redhat
почти 18 лет назад

Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.

nvd
почти 18 лет назад

Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.

github
почти 4 года назад

Argument injection vulnerability in Dovecot 1.0.x before 1.0.13, and 1.1.x before 1.1.rc3, when using blocking passdbs, allows remote attackers to bypass the password check via a password containing TAB characters, which are treated as argument delimiters that enable the skip_password_check field to be specified.

EPSS

Процентиль: 95%
0.18733
Средний