Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 11

Количество 11

github логотип

GHSA-mv3x-9fw3-qf38

6 месяцев назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2026-27856

6 месяцев назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2026-27856

6 месяцев назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2026-27856

6 месяцев назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2026-27856

6 месяцев назад

Doveadm credentials are verified using direct comparison which is susc ...

CVSS3: 7.4
EPSS: Низкий
redos логотип

ROS-20260707-80-0039

2 месяца назад

Уязвимость dovecot

CVSS3: 5.9
EPSS: Низкий
fstec логотип

BDU:2026-10401

6 месяцев назад

Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
EPSS: Низкий
redos логотип

ROS-20260707-73-0041

2 месяца назад

Уязвимость dovecot

CVSS3: 5.9
EPSS: Низкий
oracle-oval логотип

ELSA-2026-26564

около 1 месяца назад

ELSA-2026-26564: dovecot security update (IMPORTANT)

EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1641-1

5 месяцев назад

Security update for dovecot22

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20554-1

5 месяцев назад

Security update for dovecot24

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-mv3x-9fw3-qf38

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
6 месяцев назад
ubuntu логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
6 месяцев назад
redhat логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
6 месяцев назад
nvd логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
6 месяцев назад
debian логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susc ...

CVSS3: 7.4
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260707-80-0039

Уязвимость dovecot

CVSS3: 5.9
0%
Низкий
2 месяца назад
fstec логотип
BDU:2026-10401

Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
0%
Низкий
6 месяцев назад
redos логотип
ROS-20260707-73-0041

Уязвимость dovecot

CVSS3: 5.9
0%
Низкий
2 месяца назад
oracle-oval логотип
ELSA-2026-26564

ELSA-2026-26564: dovecot security update (IMPORTANT)

около 1 месяца назад
suse-cvrf логотип
SUSE-SU-2026:1641-1

Security update for dovecot22

5 месяцев назад
suse-cvrf логотип
openSUSE-SU-2026:20554-1

Security update for dovecot24

5 месяцев назад

Уязвимостей на страницу