CVE Vulnerabilities

CVE-2006-2414

Published: May 16, 2006 | Modified: Apr 03, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:P/I:N/A:N
RedHat/V2
RedHat/V3
Ubuntu
MEDIUM
root.io logo minimus.io logo echo.ai logo

Directory traversal vulnerability in Dovecot 1.0 beta and 1.0 allows remote attackers to list files and directories under the mbox parent directory and obtain mailbox names via .. sequences in the (1) LIST or (2) DELETE IMAP command.

Affected Software

NameVendorStart VersionEnd Version
DovecotTimo_sirainen1.0 (including)1.0 (including)
DovecotTimo_sirainen1.0_beta2 (including)1.0_beta2 (including)
DovecotTimo_sirainen1.0_beta3 (including)1.0_beta3 (including)
DovecotTimo_sirainen1.0_beta7 (including)1.0_beta7 (including)
DovecotUbuntudapper*
DovecotUbuntudevel*
DovecotUbuntuedgy*
DovecotUbuntufeisty*

References