Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-grp6-gcpf-v967

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

EPSS

Процентиль: 85%
0.02525
Низкий

Связанные уязвимости

ubuntu
больше 18 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

redhat
больше 18 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

nvd
больше 18 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

debian
больше 18 лет назад

Dovecot before 1.0.10, with certain configuration options including us ...

oracle-oval
почти 18 лет назад

ELSA-2008-0297: dovecot security and bug fix update (LOW)

EPSS

Процентиль: 85%
0.02525
Низкий