Lucene search

K
veracodeVeracode Vulnerability DatabaseVERACODE:24691
HistoryApr 10, 2020 - 1:01 a.m.

Access Control Bypass

2020-04-1001:01:49
Veracode Vulnerability Database
sca.analysiscenter.veracode.com
17

EPSS

0.002

Percentile

61.6%

dovecot is vulnerable to access control bypass. A flaw was found in the way Dovecot processed multiple Access Control Lists (ACL) defined for a mailbox. In some cases, Dovecot could fail to apply the more specific ACL entry, possibly resulting in more access being granted to the user than intended.