CVE-2002-1311
5 documents5 sources
Severity
4.6MEDIUM
EPSS
0.1%
top 79.08%
CISA KEV
Not in KEV
Exploit
No known exploits
Affected products
Timeline
PublishedNov 29
Latest updateApr 30
Description
Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup in certain cases, which could allow local users to read arbitrary files.
CVSS vector
AV:L/AC:L/C:P/I:P/A:PExploitability: 3.9 | Impact: 6.4
Affected Packages2 packages
Patches
🔴Vulnerability Details
3📋Vendor Advisories
1Debian▶
CVE-2002-1311: courier - Courier sqwebmail before 0.40.0 does not quickly drop privileges after startup i...↗2002