Количество 9
Количество 9
CVE-2026-40020
Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known.
CVE-2026-40020
Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known.
CVE-2026-40020
Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known.
CVE-2026-40020
Attacker can use the IMAP SETACL command to inject the anyone permissi ...
GHSA-h6rp-9mjf-6x88
Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known.
BDU:2026-10411
Уязвимость файла dovecot-acl почтовых серверов Dovecot и OX Dovecot Pro, связанная с недостатками разграничения доступа, позволяющая нарушителю вызвать отказ в обслуживании
ROS-20260707-73-0047
Уязвимость dovecot
SUSE-SU-2026:2645-1
Security update for dovecot22
openSUSE-SU-2026:21109-1
Security update for dovecot24
Уязвимостей на страницу
Уязвимость | CVSS | EPSS | Опубликовано | |
|---|---|---|---|---|
CVE-2026-40020 Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-40020 Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known. | CVSS3: 6.5 | 0% Низкий | 3 месяца назад | |
CVE-2026-40020 Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
CVE-2026-40020 Attacker can use the IMAP SETACL command to inject the anyone permissi ... | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
GHSA-h6rp-9mjf-6x88 Attacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This causes folders to be spammed to all users. The impact is limited to being able to spam folders to other users, no unexpected access is gained. Install to fixed version. No publicly available exploits are known. | CVSS3: 3.1 | 0% Низкий | 3 месяца назад | |
BDU:2026-10411 Уязвимость файла dovecot-acl почтовых серверов Dovecot и OX Dovecot Pro, связанная с недостатками разграничения доступа, позволяющая нарушителю вызвать отказ в обслуживании | CVSS3: 4.3 | 0% Низкий | 3 месяца назад | |
ROS-20260707-73-0047 Уязвимость dovecot | CVSS3: 4.3 | 0% Низкий | 24 дня назад | |
SUSE-SU-2026:2645-1 Security update for dovecot22 | около 1 месяца назад | |||
openSUSE-SU-2026:21109-1 Security update for dovecot24 | около 1 месяца назад |
Уязвимостей на страницу