4.3
CVSSv2

CVE-2014-2567

Published: 21/03/2014 Updated: 26/03/2014
CVSS v2 Base Score: 4.3 | Impact Score: 2.9 | Exploitability Score: 8.6
VMScore: 383
Vector: AV:N/AC:M/Au:N/C:N/I:P/A:N

Vulnerability Summary

The OpenConnectionTask::handleStateHelper function in Imap/Tasks/OpenConnectionTask.cpp in Trojita prior to 0.4.1 allows man-in-the-middle malicious users to trigger use of cleartext for saving a message into a (1) sent or (2) draft folder via a PREAUTH response that prevents later use of the STARTTLS command.

Vulnerable Product Search on Vulmon Subscribe to Product

trojita project trojita 0.3.96

trojita project trojita 0.3.93

trojita project trojita 0.3.92

trojita project trojita 0.3.91

trojita project trojita

trojita project trojita 0.3.90

trojita project trojita 0.2.9.4

trojita project trojita 0.2.9.2

trojita project trojita 0.2.9.1

trojita project trojita 0.2.9

trojita project trojita 0.2

trojita project trojita 0.3

trojita project trojita 0.2.9.3

trojita project trojita 0.1