CVE-2022-26562
Severity CVSS v4.0:
Pending analysis
Type:
CWE-287
Authentication Issues
Publication date:
01/04/2022
Last modified:
11/05/2023
Description
An issue in provider/libserver/ECKrbAuth.cpp of Kopano Core = 6.30 (introduced between 6.30.0 RC1e and 6.30.8 final).
Impact
Base Score 3.x
9.80
Severity 3.x
CRITICAL
Base Score 2.0
7.50
Severity 2.0
HIGH
Vulnerable products and versions
CPE | From | Up to |
---|---|---|
cpe:2.3:a:kopano:groupware_core:11.0.2.51:*:*:*:*:*:*:* |
To consult the complete list of CPE names with products and versions, see this page
References to Advisories, Solutions, and Tools
- https://bodhi.fedoraproject.org/updates/FEDORA-EPEL-2023-342b96903b
- https://bugzilla.redhat.com/show_bug.cgi?id=2192126
- https://github.com/Kopano-dev/kopano-core/blob/master/provider/libserver/ECKrbAuth.cpp#L137
- https://jira.kopano.io/browse/KC-2021
- https://kopano.com/
- https://lists.debian.org/debian-lts-announce/2023/03/msg00006.html
- https://src.fedoraproject.org/rpms/zarafa/c/a5a8366ccf07f248fae6edffb5123cfda579bfdb?branch=epel7
- https://stash.kopano.io/projects/KC/repos/kopanocore/browse/provider/libserver/ECKrbAuth.cpp#137