CVE-2017-5930

The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check.
Advertisement

NeevaHost hosting service

Configurations

Configuration 1 (hide)

OR cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*
cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*

Configuration 2 (hide)

cpe:2.3:a:postfixadmin_project:postfixadmin:*:*:*:*:*:*:*:*

Information

Published : 2017-03-20 09:59

Updated : 2020-02-26 08:59


NVD link : CVE-2017-5930

Mitre link : CVE-2017-5930


JSON object : View

CWE
CWE-862

Missing Authorization

Advertisement

dedicated server usa

Products Affected

postfixadmin_project

  • postfixadmin

opensuse

  • leap