Back to search
CVE-2014-0103
Published: Jul 29, 2014
Modified: Aug 6, 2024
PUBLISHED
Description
WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.
| Vendor | Product | Versions |
|---|---|---|
n/a | n/a | affected n/a |
References
FEDORA-2014-7889
vendor-advisory
x_refsource_FEDORA
https://bugzilla.redhat.com/show_bug.cgi?id=1073618
x_refsource_CONFIRM
68247
vdb-entry
x_refsource_BID
http://advisories.mageia.org/MGASA-2014-0380.html
x_refsource_CONFIRM
FEDORA-2014-7896
vendor-advisory
x_refsource_FEDORA
MDVSA-2014:182
vendor-advisory
x_refsource_MANDRIVA
Security Training
Train your team to recognize and prevent security threats with our comprehensive security awareness program.
Start TrainingVulnerability Scanning
Discover vulnerabilities in your applications and infrastructure before attackers do.
Scan Now