Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

nvd логотип

CVE-2007-6598

Опубликовано: 04 янв. 2008
Источник: nvd
CVSS2: 6.8
EPSS Низкий

Описание

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

Уязвимые конфигурации

Конфигурация 1
cpe:2.3:a:dovecot:dovecot:*:*:*:*:*:*:*:*
Версия до 1.0.9 (включая)

EPSS

Процентиль: 83%
0.02083
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264

Связанные уязвимости

ubuntu
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

redhat
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

debian
больше 17 лет назад

Dovecot before 1.0.10, with certain configuration options including us ...

github
около 3 лет назад

Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.

oracle-oval
около 17 лет назад

ELSA-2008-0297: dovecot security and bug fix update (LOW)

EPSS

Процентиль: 83%
0.02083
Низкий

6.8 Medium

CVSS2

Дефекты

CWE-264