Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-0463

Опубликовано: 23 янв. 2010
Источник: redhat
EPSS Низкий

Описание

Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=560140imp: privacy compromise via DNS prefetching in web mail

EPSS

Процентиль: 49%
0.0026
Низкий

Связанные уязвимости

ubuntu
почти 16 лет назад

Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.

nvd
почти 16 лет назад

Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.

debian
почти 16 лет назад

Horde IMP 4.3.6 and earlier does not request that the web browser avoi ...

github
больше 3 лет назад

Horde IMP 4.3.6 and earlier does not request that the web browser avoid DNS prefetching of domain names contained in e-mail messages, which makes it easier for remote attackers to determine the network location of the webmail user by logging DNS requests.

EPSS

Процентиль: 49%
0.0026
Низкий