Security Advisory

CVE-2011-3372

CVE vulnerability detail - eXtreme Datacenter Security Operations

Published 2011-12-24 19:00:00
Last updated 2024-09-17 00:45:46
Assigner redhat
CVSS score not scored
State PUBLISHED

Description

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.