Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2010-2813

Опубликовано: 23 июл. 2010
Источник: redhat
CVSS2: 5
EPSS Низкий

Описание

functions/imap_general.php in SquirrelMail before 1.4.21 does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preferences files.

Отчет

The Red Hat Security Response Team has rated this issue as having low security impact, a future update may address this flaw.

Затронутые пакеты

ПлатформаПакетСостояниеРекомендацияРелиз
Red Hat Enterprise Linux 3squirrelmailWill not fix
Red Hat Enterprise Linux 4squirrelmailFixedRHSA-2012:010308.02.2012
Red Hat Enterprise Linux 5squirrelmailFixedRHSA-2012:010308.02.2012

Показывать по

Дополнительная информация

Статус:

Low
https://bugzilla.redhat.com/show_bug.cgi?id=618096SquirrelMail: DoS (disk space consumption) by random IMAP login attempts with 8-bit characters in the password

EPSS

Процентиль: 88%
0.04259
Низкий

5 Medium

CVSS2

Связанные уязвимости

ubuntu
около 15 лет назад

functions/imap_general.php in SquirrelMail before 1.4.21 does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preferences files.

nvd
около 15 лет назад

functions/imap_general.php in SquirrelMail before 1.4.21 does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preferences files.

debian
около 15 лет назад

functions/imap_general.php in SquirrelMail before 1.4.21 does not prop ...

github
больше 3 лет назад

functions/imap_general.php in SquirrelMail before 1.4.21 does not properly handle 8-bit characters in passwords, which allows remote attackers to cause a denial of service (disk consumption) by making many IMAP login attempts with different usernames, leading to the creation of many preferences files.

oracle-oval
больше 13 лет назад

ELSA-2012-0103: squirrelmail security update (MODERATE)

EPSS

Процентиль: 88%
0.04259
Низкий

5 Medium

CVSS2