Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Kolab Server 2.0.1, 2.0.2 and development versions pre-2.1-20051215 and earlier, when authenticating users via secure SMTP, stores authentication credentials in plaintext in the postfix.log file, which allows local users to gain privileges.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Kolab Server 'postfix.log' 权限提升漏洞
Vulnerability Description
Kolab Server 2.0.1、2.0.2、20051215之前的2.1开发版本以及更早的版本,在通过安全SMTP认证用户时,会将认证凭证以纯文本格式存储在postfix.log文件中,这可让本地用户获取特权。
CVSS Information
N/A
Vulnerability Type
N/A