Описание
SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits instead of the 20 recommended).
| Релиз | Статус | Примечание |
|---|---|---|
| devel | not-affected | 5.12.9-1 |
| esm-apps-legacy/xenial | not-affected | code not present |
| esm-apps/bionic | not-affected | code not present |
| esm-apps/focal | not-affected | code not present |
| esm-apps/jammy | released | 5.5.1-1ubuntu0.1~esm1 |
| esm-apps/resolute | released | 5.12.4-1.2ubuntu0.1~esm1 |
| esm-apps/xenial | ignored | end of ESM support, was needs-triage |
| jammy | needed | |
| noble | DNE | |
| questing | ignored | end of life, was needed |
Показывать по
10
2 Low
CVSS3
Связанные уязвимости
CVSS3: 2
nvd
5 месяцев назад
SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits instead of the 20 recommended).
CVSS3: 2
debian
5 месяцев назад
SOGo before 5.12.5 does not renew the OTP if a user disables/enables i ...
CVSS3: 2
github
5 месяцев назад
SOGo before 5.12.5 does not renew the OTP if a user disables/enables it, and has a too short length (only 12 digits instead of the 20 recommended).
2 Low
CVSS3