← Back

CVE-2014-0037

nvd nist
Published: Apr 28, 2014Modified: May 6, 2026

JSON object

Loading...
5.0
Vector
AV:N/AC:L/Au:N/C:N/I:N/A:P
Exploitability: 10.0 / Impact: 2.9
Source: NVD

Description

The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 5.00 before 7.1.8 beta2 allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the username."

Affected (71)

Products: Zarafa: Zarafa
1 product
Zarafa
Configuration A
71 vulnerable
Vulnerable SoftwareAffected Versions
Zarafa
Version 5.00
Version 5.01
Version 5.02
Version 5.10
Version 5.11
Version 5.20
Version 5.22
Version 6.00
Version 6.01
Version 6.02
Version 6.03
Version 6.10
Version 6.11
Version 6.20.10
Version 6.20.11
Version 6.20.12
Version 6.20.2
Version 6.20.3
Version 6.20.5
Version 6.20.6
Version 6.20.7
Version 6.20
Version 6.30.0
Version 6.30.10
Version 6.30.11
Version 6.30.13
Version 6.30.16
Version 6.30.17
Version 6.30.3
Version 6.30.4
Version 6.30.5
Version 6.30.6
Version 6.30.7
Version 6.30.8
Version 6.30.9
Version 6.40.0
Version 6.40.10
Version 6.40.11
Version 6.40.12
Version 6.40.13
Version 6.40.14
Version 6.40.15
Version 6.40.16
Version 6.40.17
Version 6.40.2
Version 6.40.3
Version 6.40.4
Version 6.40.5
Version 6.40.6
Version 6.40.7
Version 6.40.8
Version 6.40.9
Version 7.0.10
Version 7.0.11
Version 7.0.12
Version 7.0.13
Version 7.0.1
Version 7.0.2
Version 7.0.3
Version 7.0.4
Version 7.0.5
Version 7.0.6
Version 7.0.7
Version 7.0.8
Version 7.0.9
Version 7.0
Version 7.1.0
Version 7.1.1
Version 7.1.2
Version 7.1.3
Version 7.1.4

References (8)

Timeline

No history available yet.