← Back

CVE-2014-0103

nvd nist
Published: Jul 29, 2014Modified: May 6, 2026

JSON object

Loading...
2.1
Vector
AV:L/AC:L/Au:N/C:P/I:N/A:N
Exploitability: 3.9 / Impact: 2.9
Source: NVD

Description

WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.

Affected (24)

1 product
Fedora
2 products
Webapp
Zarafa
Configuration A
24 vulnerable
Vulnerable SoftwareAffected Versions
Fedoraproject
Version 19
Version 20
Up to 1.5
Zarafa
Up to 7.1.9
Version 7.0.10
Version 7.0.11
Version 7.0.12
Version 7.0.13
Version 7.0.1
Version 7.0.2
Version 7.0.3
Version 7.0.4
Version 7.0.5
Version 7.0.6
Version 7.0.7
Version 7.0.8
Version 7.0.9
Version 7.0
Version 7.1.0
Version 7.1.1
Version 7.1.2
Version 7.1.3
Version 7.1.4
Version 7.1.8

Related CWEs

Timeline

No history available yet.