Описание
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.
Ссылки
EPSS
Процентиль: 69%
0.01324
Низкий
7.1 High
CVSS3
Дефекты
CWE-77
Связанные уязвимости
CVSS3: 7.1
ubuntu
10 дней назад
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.
CVSS3: 7.1
debian
10 дней назад
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search ...
CVSS3: 7.1
github
10 дней назад
In Roundcube Webmail before 1.6.18 and 1.7.x before 1.7.3, mail search and LITERAL+ byte-count desynchronization could lead to information disclosure or privilege escalation via IMAP command injection.
EPSS
Процентиль: 69%
0.01324
Низкий
7.1 High
CVSS3
Дефекты
CWE-77