VYPR
Unrated severityNVD Advisory· Published Sep 24, 2010· Updated Jun 16, 2026

CVE-2010-3304

CVE-2010-3304

Description

The ACL plugin in Dovecot 1.2.x before 1.2.13 propagates INBOX ACLs to newly created mailboxes in certain configurations, which might allow remote attackers to read mailboxes that have unintended weak ACLs.

AI Insight

LLM-synthesized narrative grounded in this CVE's description and references.

Affected products

14
  • cpe:2.3:a:dovecot:dovecot:1.2.0:*:*:*:*:*:*:*+ 13 more
    • cpe:2.3:a:dovecot:dovecot:1.2.0:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.1:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.10:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.11:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.12:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.2:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.3:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.4:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.5:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.6:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.7:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.8:*:*:*:*:*:*:*
    • cpe:2.3:a:dovecot:dovecot:1.2.9:*:*:*:*:*:*:*
    • (no CPE)range: >=1.2,<1.2.13

Patches

Vulnerability mechanics

References

10

News mentions

0

No linked articles in our index yet.