Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

debian логотип

CVE-2011-3372

Опубликовано: 24 дек. 2011
Источник: debian
EPSS Низкий

Описание

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

Пакеты

ПакетСтатусВерсия исправленияРелизТип
cyrus-imapd-2.2fixed2.4.11-1package
cyrus-imapd-2.4fixed2.4.11-1package
kolab-cyrus-imapdremovedpackage
kolab-cyrus-imapdend-of-lifesqueezepackage

EPSS

Процентиль: 72%
0.00748
Низкий

Связанные уязвимости

ubuntu
почти 14 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

redhat
около 14 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

nvd
почти 14 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

github
больше 3 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

oracle-oval
почти 14 лет назад

ELSA-2011-1508: cyrus-imapd security update (MODERATE)

EPSS

Процентиль: 72%
0.00748
Низкий