Lucene search

K
osvGoogleOSV:CVE-2020-24386
HistoryJan 04, 2021 - 5:15 p.m.

CVE-2020-24386

2021-01-0417:15:13
Google
osv.dev
4

AI Score

6.9

Confidence

Low

EPSS

0.004

Percentile

73.1%

An issue was discovered in Dovecot before 2.3.13. By using IMAP IDLE, an authenticated attacker can trigger unhibernation via attacker-controlled parameters, leading to access to other users’ email messages (and path disclosure).