Cyrus IMAP 在 3.12.4 之前的版本中存在一个安全问题:存在一个“Sieve 邮箱存在性预言机”(Sieve mailbox existence oracle)。一个经过认证的用户可以安装一个 Sieve 脚本,通过观察 LMTP 投递过程中哪个 分支被触发,来探测其他用户的私有邮箱是否存在,或者读取共享邮箱的注释(annotations)值。
Although we use advanced large model technology, its output may still contain inaccurate or outdated information.Shenlong tries to ensure data accuracy, but please verify and judge based on the actual situation.
| Vendor | Product | Affected Versions | CPE | Subscribe |
|---|---|---|---|---|
| cyrusimap | Cyrus IMAP | 0 ~ 3.8.8 | - |
|
| # | POC Description | Source Link | Shenlong Link |
|---|
No public POC found.
Login to generate AI POC| CVE-2026-61907 | 4.3 MEDIUM | Cyrus IMAP 3.12.4前JMAP Snooze ACL绕过 |
| CVE-2026-61915 | 4.2 MEDIUM | Cyrus IMAP 3.12.4前 认证用户致CalDAV进程崩溃 |
| CVE-2026-61910 | 3.5 LOW | Cyrus IMAP 3.12.4前共享邮箱权限控制缺陷 |
| CVE-2026-61909 | 3.5 LOW | Cyrus IMAP 3.12.4前 CalDAV多获取ACL绕过 |
| CVE-2026-61908 | 3.1 LOW | Cyrus IMAP<3.12.4 JMAP越界读堆内存 |
No comments yet