Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

redhat логотип

CVE-2011-3372

Опубликовано: 05 окт. 2011
Источник: redhat
CVSS2: 5.8
EPSS Низкий

Описание

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

Дополнительная информация

Статус:

Moderate
https://bugzilla.redhat.com/show_bug.cgi?id=740822cyrus-imapd: nntpd authentication bypass

EPSS

Процентиль: 72%
0.00748
Низкий

5.8 Medium

CVSS2

Связанные уязвимости

ubuntu
больше 13 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

nvd
больше 13 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

debian
больше 13 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2 ...

github
больше 3 лет назад

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.

oracle-oval
больше 13 лет назад

ELSA-2011-1508: cyrus-imapd security update (MODERATE)

EPSS

Процентиль: 72%
0.00748
Низкий

5.8 Medium

CVSS2