CVE-2001-1154

3 documents3 sources
Severity
5.0MEDIUM
EPSS
0.7%
top 27.11%
CISA KEV
Not in KEV
Exploit
No known exploits
Timeline
PublishedAug 30
Latest updateApr 30

Description

Cyrus 2.0.15, 2.0.16, and 1.6.24 on BSDi 4.2, with IMAP enabled, allows remote attackers to cause a denial of service (hang) using PHP IMAP clients.

CVSS vector

AV:N/AC:L/C:N/I:N/A:PExploitability: 10.0 | Impact: 2.9

Affected Packages2 packages

NVDcarnegie_mellon_university/cyrus_imap_server1.6.24, 2.0.15, 2.0.16+2
NVDbsdi/bsd_os4.2

🔴Vulnerability Details

2
GHSA
GHSA-3525-ccch-jcxf: Cyrus 22022-04-30
CVEList
CVE-2001-1154: Cyrus 22002-03-15
CVE-2001-1154 (MEDIUM CVSS 5) | Cyrus 2.0.15 | cvebase.io