CVE-2014-2014
Published Apr 18, 2014
Last updated a year ago
Overview
- Description
- imapsync before 1.584, when running with the --tls option, attempts a cleartext login when a certificate verification failure occurs, which allows remote attackers to obtain credentials by sniffing the network.
- Source
- cve@mitre.org
- NVD status
- Analyzed
Social media
- Hype score
- Not currently trending
Risk scores
CVSS 2.0
- Type
- Primary
- Base score
- 4.3
- Impact score
- 2.9
- Exploitability score
- 8.6
- Vector string
- AV:N/AC:M/Au:N/C:P/I:N/A:N
Weaknesses
- nvd@nist.gov
- CWE-255
Configurations
[ { "nodes": [ { "negate": false, "cpeMatch": [ { "criteria": "cpe:2.3:a:imapsync_project:imapsync:*:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "56905459-0B35-43B8-8C47-FBA9139EA823", "versionEndIncluding": "1.580" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.53:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B40979AF-EB6A-46EB-99E4-D701581ED1BF" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.500:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "5474AB1C-7C65-4DBA-84FC-25225ED0D1F5" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.504:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "FAF07F71-64E1-4C03-990B-125F65BE1755" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.508:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8E69E9B3-6B60-42FC-BF19-5D03C18C2D87" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.516:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "89F4D622-A8B7-4694-8299-6CD2A7CC4BC6" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.518:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "561963EC-FC73-4284-91CB-D314EE02B3E3" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.525:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "B0BECF9F-1286-4549-8C60-1956024E0662" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.542:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "E29744AC-E2CC-4C1E-8C06-8FD13CD44605" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.547:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "F9847527-D696-4BEC-A4D7-38ED38AB2C24" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.554:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "2DCD5E84-F077-4690-A25E-A026531FE866" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.558:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "8BDBB7C4-28E5-4C04-B55B-FC91E96CA0CE" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.564:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A74F9B7A-6DAA-4ECA-8113-4629C7FDD987" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.567:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "A525B607-E517-4CAD-80F1-053B8F8AB659" }, { "criteria": "cpe:2.3:a:imapsync_project:imapsync:1.569:*:*:*:*:*:*:*", "vulnerable": true, "matchCriteriaId": "AFE68C11-2954-4C9E-8439-CB72D051A12A" } ], "operator": "OR" } ] } ]