Vulnerabilities > Cyrus > Imap > 3.1.5

DATE CVE VULNERABILITY TITLE RISK
2021-05-10 CVE-2021-32056 Incorrect Permission Assignment for Critical Resource vulnerability in multiple products
Cyrus IMAP before 3.2.7, and 3.3.x and 3.4.x before 3.4.1, allows remote authenticated users to bypass intended access restrictions on server annotations and consequently cause replication to stall.
network
low complexity
cyrus fedoraproject CWE-732
4.3
2019-12-16 CVE-2019-19783 Improper Privilege Management vulnerability in multiple products
An issue was discovered in Cyrus IMAP before 2.5.15, 3.0.x before 3.0.13, and 3.1.x through 3.1.8.
network
low complexity
cyrus debian fedoraproject canonical CWE-269
6.5