Vulnerabilities
Vulnerable Software

Vulnerability Details CVE-2019-3814

It was discovered that Dovecot before versions 2.2.36.1 and 2.3.4.1 incorrectly handled client certificates. A remote attacker in possession of a valid certificate with an empty username field could possibly use this issue to impersonate other users.
Exploit prediction scoring system (EPSS) score
EPSS Score 0.005
EPSS Ranking 66.4%
CVSS Severity
CVSS v3 Score 7.7
CVSS v2 Score 4.9
References
Products affected by CVE-2019-3814


Contact Us

Shodan ® - All rights reserved