Vulnerability   
Search   
    Search 324607 CVE descriptions
and 145615 test descriptions,
access 10,000+ cross references.
Tests   CVE   All  

CVE ID:CVE-2014-5447
Description:Zarafa WebAccess 7.1.10 and WebApp 1.6 beta uses weak permissions (644) for config.php, which allows local users to obtain sensitive information by reading the PHP session files. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-0103.
Test IDs: None available
Cross References: Common Vulnerability Exposure (CVE) ID: CVE-2014-5447
BugTraq ID: 69362
http://www.securityfocus.com/bid/69362
http://www.mandriva.com/security/advisories?name=MDVSA-2014:182
http://seclists.org/oss-sec/2014/q3/444
http://seclists.org/oss-sec/2014/q3/445




© 1998-2025 E-Soft Inc. All rights reserved.