CVE Vulnerabilities

CVE-2006-0213

Published: Jan 14, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
4.6 MEDIUM
AV:L/AC:L/Au:N/C:P/I:P/A:P
RedHat/V2
RedHat/V3
Ubuntu
root.io logo minimus.io logo echo.ai logo

Kolab Server 2.0.1, 2.0.2 and development versions pre-2.1-20051215 and earlier, when authenticating users via secure SMTP, stores authentication credentials in plaintext in the postfix.log file, which allows local users to gain privileges.

Affected Software

NameVendorStart VersionEnd Version
Kolab_groupware_serverKolab*2005-12-15_pre2.1 (including)
Kolab_groupware_serverKolab2.0.1 (including)2.0.1 (including)
Kolab_groupware_serverKolab2.0.2 (including)2.0.2 (including)

References