Описание
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
Ссылки
- Issue Tracking
- Mailing List
- Broken LinkVendor Advisory
- Broken Link
- Broken Link
- Broken Link
- Broken Link
- Third Party Advisory
- Mailing ListRelease Notes
- Broken Link
- Broken Link
- Broken LinkThird Party AdvisoryVDB Entry
- Third Party Advisory
- Permissions Required
- Broken Link
- Mailing List
- Mailing List
- Issue Tracking
- Mailing List
- Broken LinkVendor Advisory
Уязвимые конфигурации
Одно из
Одно из
EPSS
7.5 High
CVSS3
6.4 Medium
CVSS2
Дефекты
Связанные уязвимости
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
The ACL plugin in Dovecot before 1.1.4 treats negative access rights a ...
The ACL plugin in Dovecot before 1.1.4 treats negative access rights as if they are positive access rights, which allows attackers to bypass intended access restrictions.
ELSA-2009-0205: dovecot security and bug fix update (LOW)
EPSS
7.5 High
CVSS3
6.4 Medium
CVSS2