Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

github логотип

GHSA-grp6-gcpf-v967

Опубликовано: 01 мая 2022
Источник: github
Github: Не прошло ревью

Описание

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

EPSS

Процентиль: 83%
0.02083
Низкий

Связанные уязвимости

ubuntu
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

redhat
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

nvd
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

debian
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including us ...

oracle-oval
около 17 лет назад

ELSA-2008-0297: dovecot security and bug fix update (LOW)

EPSS

Процентиль: 83%
0.02083
Низкий