Cyrus IMAP 3.1.7

CPE Details

Cyrus IMAP 3.1.7
3.1.7
2019-12-30
12h39 +00:00
2019-12-30
12h39 +00:00
Alerte pour un CPE
Restez informé de toutes modifications pour un CPE spécifique.
Gestion des notifications

CPE Name: cpe:2.3:a:cyrus:imap:3.1.7:*:*:*:*:*:*:*

Informations

Vendor

cyrus

Product

imap

Version

3.1.7

Related CVE

Open and find in CVE List

CVE ID Publié Description Score Gravité
CVE-2021-32056 2021-05-10 11h05 +00:00 Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypass intended access restrictions on server annotations and consequently cause replication to stall.
4.3
Moyen
CVE-2019-19783 2019-12-16 12h06 +00:00 An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8. If sieve script uploading is allowed (3.x) or certain non-default sieve options are enabled (2.x), a user with a mail account on the service can use a sieve script containing a fileinto directive to create any mailbox with administrator privileges, because of folder mishandling in autosieve_createfolder() in imap/lmtp_sieve.c.
6.5
Moyen