Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Dovecot before 1.0.10, with certain configuration options including use of %variables, does not properly maintain the LDAP+auth cache, which might allow remote authenticated users to login as a different user who has the same password.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dovecot身份认证绕过漏洞
Vulnerability Description
1.0.10版本之前的Dovecot,认证配置操作中包含使用了"%变量",由于没有恰当地保持LDAP+auth缓存。这有可能允许远程授权用户以一个拥有相同密码的不同用户的身份进行登录。
CVSS Information
N/A
Vulnerability Type
N/A