Vulnerability Information
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
Vulnerability Title
N/A
Vulnerability Description
script-login in Dovecot 2.0.x before 2.0.13 does not follow the chroot configuration setting, which might allow remote authenticated users to conduct directory traversal attacks by leveraging a script.
CVSS Information
N/A
Vulnerability Type
N/A
Vulnerability Title
Dovecot script-login目录遍历攻击漏洞
Vulnerability Description
Dovecot是一款开源的基于类Linux/UNIX系统的IMAP和POP3邮件服务器。 Dovecot 2.0.13之前的2.0.x版本中的script-login没有遵循chroot配置的设置。远程认证用户可以利用脚本进行目录遍历攻击。
CVSS Information
N/A
Vulnerability Type
N/A