CVE Vulnerabilities

CVE-2008-4578

Published: Oct 15, 2008 | Modified: Apr 09, 2025
CVSS 3.x
N/A
Source:
NVD
CVSS 2.x
5 MEDIUM
AV:N/AC:L/Au:N/C:N/I:P/A:N
RedHat/V2
3.5 LOW
AV:N/AC:M/Au:S/C:N/I:P/A:N
RedHat/V3
Ubuntu
LOW
root.io logo minimus.io logo echo.ai logo

The ACL plugin in Dovecot before 1.1.4 allows attackers to bypass intended access restrictions by using the k right to create unauthorized parent/child/child mailboxes.

Affected Software

NameVendorStart VersionEnd Version
DovecotDovecot*1.1.3 (including)
DovecotDovecot0.99.13 (including)0.99.13 (including)
DovecotDovecot0.99.14 (including)0.99.14 (including)
DovecotDovecot1.0 (including)1.0 (including)
DovecotDovecot1.0.2 (including)1.0.2 (including)
DovecotDovecot1.0.3 (including)1.0.3 (including)
DovecotDovecot1.0.4 (including)1.0.4 (including)
DovecotDovecot1.0.5 (including)1.0.5 (including)
DovecotDovecot1.0.6 (including)1.0.6 (including)
DovecotDovecot1.0.7 (including)1.0.7 (including)
DovecotDovecot1.0.8 (including)1.0.8 (including)
DovecotDovecot1.0.9 (including)1.0.9 (including)
DovecotDovecot1.0.10 (including)1.0.10 (including)
DovecotDovecot1.0.12 (including)1.0.12 (including)
DovecotDovecot1.0.beta1 (including)1.0.beta1 (including)
DovecotDovecot1.0.beta2 (including)1.0.beta2 (including)
DovecotDovecot1.0.beta3 (including)1.0.beta3 (including)
DovecotDovecot1.0.beta4 (including)1.0.beta4 (including)
DovecotDovecot1.0.beta5 (including)1.0.beta5 (including)
DovecotDovecot1.0.beta6 (including)1.0.beta6 (including)
DovecotDovecot1.0.beta7 (including)1.0.beta7 (including)
DovecotDovecot1.0.beta8 (including)1.0.beta8 (including)
DovecotDovecot1.0.beta9 (including)1.0.beta9 (including)
DovecotDovecot1.0.rc1 (including)1.0.rc1 (including)
DovecotDovecot1.0.rc2 (including)1.0.rc2 (including)
DovecotDovecot1.0.rc3 (including)1.0.rc3 (including)
DovecotDovecot1.0.rc4 (including)1.0.rc4 (including)
DovecotDovecot1.0.rc5 (including)1.0.rc5 (including)
DovecotDovecot1.0.rc6 (including)1.0.rc6 (including)
DovecotDovecot1.0.rc7 (including)1.0.rc7 (including)
DovecotDovecot1.0.rc8 (including)1.0.rc8 (including)
DovecotDovecot1.0.rc9 (including)1.0.rc9 (including)
DovecotDovecot1.0.rc10 (including)1.0.rc10 (including)
DovecotDovecot1.0.rc11 (including)1.0.rc11 (including)
DovecotDovecot1.0.rc12 (including)1.0.rc12 (including)
DovecotDovecot1.0.rc13 (including)1.0.rc13 (including)
DovecotDovecot1.0.rc14 (including)1.0.rc14 (including)
DovecotDovecot1.0.rc15 (including)1.0.rc15 (including)
DovecotDovecot1.0.rc16 (including)1.0.rc16 (including)
DovecotDovecot1.0.rc17 (including)1.0.rc17 (including)
DovecotDovecot1.0.rc18 (including)1.0.rc18 (including)
DovecotDovecot1.0.rc19 (including)1.0.rc19 (including)
DovecotDovecot1.0.rc20 (including)1.0.rc20 (including)
DovecotDovecot1.0.rc21 (including)1.0.rc21 (including)
DovecotDovecot1.0.rc22 (including)1.0.rc22 (including)
DovecotDovecot1.0.rc23 (including)1.0.rc23 (including)
DovecotDovecot1.0.rc24 (including)1.0.rc24 (including)
DovecotDovecot1.0.rc25 (including)1.0.rc25 (including)
DovecotDovecot1.0.rc26 (including)1.0.rc26 (including)
DovecotDovecot1.0.rc27 (including)1.0.rc27 (including)
DovecotDovecot1.0.rc28 (including)1.0.rc28 (including)
DovecotDovecot1.0_rc29 (including)1.0_rc29 (including)
DovecotDovecot1.1 (including)1.1 (including)
DovecotDovecot1.1-rc2 (including)1.1-rc2 (including)
DovecotDovecot1.1.0 (including)1.1.0 (including)
DovecotDovecot1.1.1 (including)1.1.1 (including)
DovecotDovecot1.1.2 (including)1.1.2 (including)
DovecotUbuntugutsy*
DovecotUbuntuhardy*
DovecotUbuntuupstream*

References