Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
Dovecot 1.2.x before 1.2.8 sets 0777 permissions during creation of certain directories at installation time, which allows local users to access arbitrary user accounts by replacing the auth socket, related to the parent directories of the base_dir directory, and possibly the base_dir directory itself.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dovecot不安全base_dir权限漏洞
Vulnerability Description
Dovecot是一款开源的基于类Linux/UNIX系统的IMAP和POP3邮件服务器。 Dovecot默认将base_dir目录的权限设置为0777,本地用户可以替换Dovecot的认证套接字以其他用户的身份登录。
CVSS Information
N/A
Vulnerability Type
N/A