[Forgot Password]
Login  Register Subscribe

30479

 
 

423868

 
 

250038

 
 

909

 
 

195843

 
 

282

Paid content will be excluded from the download.


Download | Alert*
OVAL

CVE-2017-8114 -- roundcube

ID: oval:org.secpod.oval:def:1900439Date: (C)2019-02-28   (M)2023-12-20
Class: VULNERABILITYFamily: unix




Roundcube Webmail allows arbitrary password resets by authenticated users.This affects versions before 1.0.11, 1.1.x before 1.1.9, and 1.2.x before1.2.5. The problem is caused by an improperly restricted exec call in the virtualmin and sasl drivers of the password plugin.

Platform:
Ubuntu 16.04
Ubuntu 14.04
Product:
roundcube
Reference:
CVE-2017-8114
CVE    1
CVE-2017-8114
CPE    3
cpe:/o:ubuntu:ubuntu_linux:16.04
cpe:/o:ubuntu:ubuntu_linux:14.04
cpe:/a:roundcube:roundcube

© SecPod Technologies