Lucene search

K
osvGoogleOSV:CVE-2019-3814
HistoryMar 27, 2019 - 1:29 p.m.

CVE-2019-3814

2019-03-2713:29:01
Google
osv.dev
10

AI Score

6.8

Confidence

Low

EPSS

0.003

Percentile

69.4%

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.