VYPR
Low severity2.7NVD Advisory· Published Mar 20, 2017· Updated May 13, 2026

CVE-2017-5930

CVE-2017-5930

Description

The AliasHandler component in PostfixAdmin before 3.0.2 allows remote authenticated domain admins to delete protected aliases via the delete parameter to delete.php, involving a missing permission check.

Affected products

3
  • cpe:2.3:a:postfixadmin_project:postfixadmin:*:*:*:*:*:*:*:*
    Range: <3.0.2
  • OpenSUSE/Leap2 versions
    cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*+ 1 more
    • cpe:2.3:o:opensuse:leap:42.1:*:*:*:*:*:*:*
    • cpe:2.3:o:opensuse:leap:42.2:*:*:*:*:*:*:*

Patches

0

No patches discovered yet.

Vulnerability mechanics

AI mechanics synthesis has not run for this CVE yet.

References

7

News mentions

0

No linked articles in our index yet.