5

CVE-2013-4279

Exploit
imapsync 1.564 and earlier performs a release check by default, which sends sensitive information (imapsync, operating system, and Perl version) to the developer's site.
Daten sind bereitgestellt durch National Vulnerability Database (NVD)
Imapsync ProjectImapsync Version <= 1.564
Imapsync ProjectImapsync Version1.53
Imapsync ProjectImapsync Version1.500
Imapsync ProjectImapsync Version1.504
Imapsync ProjectImapsync Version1.508
Imapsync ProjectImapsync Version1.516
Imapsync ProjectImapsync Version1.518
Imapsync ProjectImapsync Version1.525
Imapsync ProjectImapsync Version1.542
Imapsync ProjectImapsync Version1.547
Imapsync ProjectImapsync Version1.554
Imapsync ProjectImapsync Version1.558
Zu dieser CVE wurde keine CISA KEV oder CERT.AT-Warnung gefunden.
EPSS Metriken
Typ Quelle Score Percentile
EPSS FIRST.org 0.42% 0.591
CVSS Metriken
Quelle Base Score Exploit Score Impact Score Vector String
nvd@nist.gov 5 10 2.9
AV:N/AC:L/Au:N/C:P/I:N/A:N
CWE-200 Exposure of Sensitive Information to an Unauthorized Actor

The product exposes sensitive information to an actor that is not explicitly authorized to have access to that information.