Логотип exploitDog
bind:"BDU:2021-03739" OR bind:"CVE-2020-28896"
Консоль
Логотип exploitDog

exploitDog

bind:"BDU:2021-03739" OR bind:"CVE-2020-28896"

Количество 14

Количество 14

fstec логотип

BDU:2021-03739

больше 4 лет назад

Уязвимость почтового клиента mutt, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.3
EPSS: Низкий
ubuntu логотип

CVE-2020-28896

больше 4 лет назад

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
EPSS: Низкий
redhat логотип

CVE-2020-28896

больше 4 лет назад

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
EPSS: Низкий
nvd логотип

CVE-2020-28896

больше 4 лет назад

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
EPSS: Низкий
debian логотип

CVE-2020-28896

больше 4 лет назад

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $s ...

CVSS3: 5.3
EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2141-1

больше 4 лет назад

Security update for mutt

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2128-1

больше 4 лет назад

Security update for mutt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3632-1

больше 4 лет назад

Security update for mutt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:3568-1

больше 4 лет назад

Security update for mutt

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2020:14551-1

больше 4 лет назад

Security update for mutt

EPSS: Низкий
github логотип

GHSA-346p-qx4x-g348

около 3 лет назад

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

EPSS: Низкий
rocky логотип

RLSA-2021:4181

больше 3 лет назад

Moderate: mutt security, bug fix, and enhancement update

EPSS: Низкий
oracle-oval логотип

ELSA-2021-4181

больше 3 лет назад

ELSA-2021-4181: mutt security, bug fix, and enhancement update (MODERATE)

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2020:2127-1

больше 4 лет назад

Security update for neomutt

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
fstec логотип
BDU:2021-03739

Уязвимость почтового клиента mutt, связанная с недостаточной защитой регистрационных данных, позволяющая нарушителю получить доступ к конфиденциальным данным

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
ubuntu логотип
CVE-2020-28896

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
redhat логотип
CVE-2020-28896

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
nvd логотип
CVE-2020-28896

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
debian логотип
CVE-2020-28896

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $s ...

CVSS3: 5.3
0%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2141-1

Security update for mutt

0%
Низкий
больше 4 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2128-1

Security update for mutt

0%
Низкий
больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:3632-1

Security update for mutt

0%
Низкий
больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:3568-1

Security update for mutt

0%
Низкий
больше 4 лет назад
suse-cvrf логотип
SUSE-SU-2020:14551-1

Security update for mutt

0%
Низкий
больше 4 лет назад
github логотип
GHSA-346p-qx4x-g348

Mutt before 2.0.2 and NeoMutt before 2020-11-20 did not ensure that $ssl_force_tls was processed if an IMAP server's initial server response was invalid. The connection was not properly closed, and the code could continue attempting to authenticate. This could result in authentication credentials being exposed on an unencrypted connection, or to a machine-in-the-middle.

0%
Низкий
около 3 лет назад
rocky логотип
RLSA-2021:4181

Moderate: mutt security, bug fix, and enhancement update

больше 3 лет назад
oracle-oval логотип
ELSA-2021-4181

ELSA-2021-4181: mutt security, bug fix, and enhancement update (MODERATE)

больше 3 лет назад
suse-cvrf логотип
openSUSE-SU-2020:2127-1

Security update for neomutt

больше 4 лет назад

Уязвимостей на страницу