CVE-2014-0103
29.07.2014, 14:55
WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.Enginsight
Vendor | Product | Version |
---|---|---|
zarafa | webapp | 𝑥 ≤ 1.5 |
zarafa | zarafa | 𝑥 ≤ 7.1.9 |
zarafa | zarafa | 7.0 |
zarafa | zarafa | 7.0.1 |
zarafa | zarafa | 7.0.2 |
zarafa | zarafa | 7.0.3 |
zarafa | zarafa | 7.0.4 |
zarafa | zarafa | 7.0.5 |
zarafa | zarafa | 7.0.6 |
zarafa | zarafa | 7.0.7 |
zarafa | zarafa | 7.0.8 |
zarafa | zarafa | 7.0.9 |
zarafa | zarafa | 7.0.10 |
zarafa | zarafa | 7.0.11 |
zarafa | zarafa | 7.0.12 |
zarafa | zarafa | 7.0.13 |
zarafa | zarafa | 7.1.0 |
zarafa | zarafa | 7.1.1 |
zarafa | zarafa | 7.1.2 |
zarafa | zarafa | 7.1.3 |
zarafa | zarafa | 7.1.4 |
zarafa | zarafa | 7.1.8 |
𝑥
= Vulnerable software versions
Common Weakness Enumeration
References