Vulnerabilidades en Open-Xchange GmbH
72 resultadosAnálisis Vexday
Open-Xchange GmbH apresenta 47 vulnerabilidades catalogadas, predominantemente de injeção de script (CWE-79), sem críticas ou exploração ativa conhecida. Cinco vulnerabilidades foram publicadas nos últimos 90 dias, indicando risco moderado e constante que requer monitoramento contínuo, especialmente em ambientes que lidam com dados sensíveis.
CVE-2026-24031HIGHDovecot SQL based authentication can be bypassed when auth_username_chars is cleared by admin. This vulnerability allows bypassing authenticEPSS 0.4%CVE-2026-42007CRITICALAn attacker that has valid credentials can use a Sieve script with the editheader extension to trigger a use-after-free in the mail editing EPSS 0.4%CVE-2026-27855MEDIUMDovecot OTP authentication is vulnerable to replay attack under specific conditions. If auth cache is enabled, and username is altered in paEPSS 0.4%CVE-2026-40019MEDIUMAn unauthenticated attacker can send a truncated quoted argument to the ManageSieve login process, which makes it spin in an infinite loop cEPSS 0.4%CVE-2026-40015MEDIUMAn attacker that has valid credentials can open many connections to the imap-hibernate service and send invalid commands, which can intermitEPSS 0.4%CVE-2026-33607MEDIUMAn attacker that has valid credentials can use IMAP LIST command to consume CPU. This can cause degradation or denial of service for IMAP. MEPSS 0.4%CVE-2026-33263MEDIUMWhen mail_max_userip_connections is set (default 10) and reached, submission-login can crash with epoll() panic caused by file descriptor haEPSS 0.4%CVE-2026-40017MEDIUMAn attacker that can send mail to a user can craft a message header whose values are chosen to collide in an internal hash table, which makeEPSS 0.4%CVE-2026-40014MEDIUMAn attacker that can send mail to a user can craft a message header that makes the IMAP THREAD command consume CPU disproportionate to the sEPSS 0.4%CVE-2025-30188HIGHMalicious or unintentional API requests can be used to add significant amount of data to caches. Caches may evict information that is requirEPSS 0.3%CVE-2026-27860LOWIf auth_username_chars is empty, it is possible to inject arbitrary LDAP filter to Dovecot's LDAP authentication. This leads to potentially EPSS 0.3%CVE-2026-40018HIGHNone None None No publicly available exploits are known.EPSS 0.3%CVE-2026-33604MEDIUMAn attacker that can get Dovecot to relay a message, for example through Sieve redirect or submission relay, can use a crafted line ending iEPSS 0.3%CVE-2026-73208HIGHAn attacker that holds a token intended for a different purpose can authenticate, because when an OAuth2 token response does not contain a sEPSS 0.3%CVE-2026-52681LOWSieve CPU resource usage is tracked in the compiled script, so an attacker that has valid credentials can reset the accounting by repeatedlyEPSS 0.3%CVE-2026-42392MEDIUMAn attacker that has valid credentials can send an invalid IMAP URLFETCH command, which causes uninitialized memory to be included in the erEPSS 0.3%CVE-2026-40020LOWAttacker can use the IMAP SETACL command to inject the anyone permission to user's dovecot-acl file even if imap_acl_allow_anyone=no. This cEPSS 0.3%CVE-2025-59031MEDIUMDovecot has provided a script to use for attachment to text conversion. This script unsafely handles zip-style attachments. Attacker can useEPSS 0.3%CVE-2026-40203LOWWhen IMAP compression is enabled, the same compression state is reused across responses in a session, so response sizes depend on both attacEPSS 0.3%CVE-2026-42008MEDIUMForwarding information received from a host listed as a trusted proxy is not kept separate from Dovecot's own authentication fields, so a vaEPSS 0.3%