Vulnerabilities > Dovecot

DATE CVE VULNERABILITY TITLE RISK
2008-01-04 CVE-2007-6598 Permissions, Privileges, and Access Controls vulnerability in Dovecot
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
network
dovecot CWE-264
6.8
2007-08-08 CVE-2007-4211 Unspecified vulnerability in Dovecot
The ACL plugin in Dovecot before 1.0.3 allows remote authenticated users with the insert right to save certain flags via a (1) COPY or (2) APPEND command.
network
dovecot
6.0
2007-04-25 CVE-2007-2231 Remote Information Disclosure vulnerability in Dovecot Zlib Plugin
Directory traversal vulnerability in index/mbox/mbox-storage.c in Dovecot before 1.0.rc29, when using the zlib plugin, allows remote attackers to read arbitrary gzipped (.gz) mailboxes (mbox files) via a ..
network
dovecot
4.3