CVE-2010-3779

Source
https://cve.org/CVERecord?id=CVE-2010-3779
Import Source
https://storage.googleapis.com/cve-osv-conversion/osv-output/CVE-2010-3779.json
JSON Data
https://api.osv.dev/v1/vulns/CVE-2010-3779
Downstream
Published
2010-10-06T21:00:01Z
Modified
2026-04-10T03:41:26.274715Z
Summary
[none]
Details

Dovecot 1.2.x before 1.2.15 and 2.0.x before 2.0.beta2 grants the admin permission to the owner of each mailbox in a non-public namespace, which might allow remote authenticated users to bypass intended access restrictions by changing the ACL of a mailbox, as demonstrated by a symlinked shared mailbox.

References

Affected packages