Логотип exploitDog
Консоль
Логотип exploitDog

exploitDog

Количество 9

Количество 9

github логотип

GHSA-mv3x-9fw3-qf38

4 месяца назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
ubuntu логотип

CVE-2026-27856

4 месяца назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
redhat логотип

CVE-2026-27856

4 месяца назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
nvd логотип

CVE-2026-27856

4 месяца назад

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
EPSS: Низкий
debian логотип

CVE-2026-27856

4 месяца назад

Doveadm credentials are verified using direct comparison which is susc ...

CVSS3: 7.4
EPSS: Низкий
fstec логотип

BDU:2026-10401

4 месяца назад

Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
EPSS: Низкий
redos логотип

ROS-20260707-73-0041

24 дня назад

Уязвимость dovecot

CVSS3: 5.9
EPSS: Низкий
suse-cvrf логотип

SUSE-SU-2026:1641-1

3 месяца назад

Security update for dovecot22

EPSS: Низкий
suse-cvrf логотип

openSUSE-SU-2026:20554-1

4 месяца назад

Security update for dovecot24

EPSS: Низкий

Уязвимостей на страницу

Уязвимость
CVSS
EPSS
Опубликовано
github логотип
GHSA-mv3x-9fw3-qf38

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
4 месяца назад
ubuntu логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
4 месяца назад
redhat логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
4 месяца назад
nvd логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susceptible to timing oracle attack. An attacker can use this to determine the configured credentials. Figuring out the credential will lead into full access to the affected component. Limit access to the doveadm http service port, install fixed version. No publicly available exploits are known.

CVSS3: 7.4
0%
Низкий
4 месяца назад
debian логотип
CVE-2026-27856

Doveadm credentials are verified using direct comparison which is susc ...

CVSS3: 7.4
0%
Низкий
4 месяца назад
fstec логотип
BDU:2026-10401

Уязвимость компонента doveadm почтового сервера Dovecot, позволяющая нарушителю получить несанкционированный доступ к защищаемой информации

CVSS3: 5.9
0%
Низкий
4 месяца назад
redos логотип
ROS-20260707-73-0041

Уязвимость dovecot

CVSS3: 5.9
0%
Низкий
24 дня назад
suse-cvrf логотип
SUSE-SU-2026:1641-1

Security update for dovecot22

3 месяца назад
suse-cvrf логотип
openSUSE-SU-2026:20554-1

Security update for dovecot24

4 месяца назад

Уязвимостей на страницу