Описание
Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via ".." sequences in the (1) LIST or (2) DELETE IMAP command.
Релиз | Статус | Примечание |
---|---|---|
dapper | released | 1.0.beta3-3ubuntu5.5 |
devel | released | 1.0.3-3ubuntu1 |
edgy | released | 1.0.rc2-1ubuntu2.2 |
feisty | released | 1.0.rc17-1ubuntu2.1 |
upstream | needs-triage |
Показывать по
Ссылки на источники
EPSS
5 Medium
CVSS2
Связанные уязвимости
Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via ".." sequences in the (1) LIST or (2) DELETE IMAP command.
Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows r ...
Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via ".." sequences in the (1) LIST or (2) DELETE IMAP command.
EPSS
5 Medium
CVSS2