The ValidateUserLogon function in provider/libserver/ECSession.cpp in Zarafa 5.00 before 7.1.8 beta2 allows remote attackers to cause a denial of service (crash) via vectors related to "a NULL pointer of the username."
2014-04-28T14:09:06.080
2025-04-12T10:46:40.837
Deferred
CVSSv2: 5.0 (MEDIUM)
AV:N/AC:L/Au:N/C:N/I:N/A:P
10.0
2.9
Type | Vendor | Product | Version/Range | Vulnerable? |
---|---|---|---|---|
Application | zarafa | zarafa | 5.00 | Yes |
Application | zarafa | zarafa | 5.01 | Yes |
Application | zarafa | zarafa | 5.02 | Yes |
Application | zarafa | zarafa | 5.10 | Yes |
Application | zarafa | zarafa | 5.11 | Yes |
Application | zarafa | zarafa | 5.20 | Yes |
Application | zarafa | zarafa | 5.22 | Yes |
Application | zarafa | zarafa | 6.00 | Yes |
Application | zarafa | zarafa | 6.01 | Yes |
Application | zarafa | zarafa | 6.02 | Yes |
Application | zarafa | zarafa | 6.03 | Yes |
Application | zarafa | zarafa | 6.10 | Yes |
Application | zarafa | zarafa | 6.11 | Yes |
Application | zarafa | zarafa | 6.20 | Yes |
Application | zarafa | zarafa | 6.20.2 | Yes |
Application | zarafa | zarafa | 6.20.3 | Yes |
Application | zarafa | zarafa | 6.20.5 | Yes |
Application | zarafa | zarafa | 6.20.6 | Yes |
Application | zarafa | zarafa | 6.20.7 | Yes |
Application | zarafa | zarafa | 6.20.10 | Yes |
Application | zarafa | zarafa | 6.20.11 | Yes |
Application | zarafa | zarafa | 6.20.12 | Yes |
Application | zarafa | zarafa | 6.30.0 | Yes |
Application | zarafa | zarafa | 6.30.3 | Yes |
Application | zarafa | zarafa | 6.30.4 | Yes |
Application | zarafa | zarafa | 6.30.5 | Yes |
Application | zarafa | zarafa | 6.30.6 | Yes |
Application | zarafa | zarafa | 6.30.7 | Yes |
Application | zarafa | zarafa | 6.30.8 | Yes |
Application | zarafa | zarafa | 6.30.9 | Yes |
Application | zarafa | zarafa | 6.30.10 | Yes |
Application | zarafa | zarafa | 6.30.11 | Yes |
Application | zarafa | zarafa | 6.30.13 | Yes |
Application | zarafa | zarafa | 6.30.16 | Yes |
Application | zarafa | zarafa | 6.30.17 | Yes |
Application | zarafa | zarafa | 6.40.0 | Yes |
Application | zarafa | zarafa | 6.40.2 | Yes |
Application | zarafa | zarafa | 6.40.3 | Yes |
Application | zarafa | zarafa | 6.40.4 | Yes |
Application | zarafa | zarafa | 6.40.5 | Yes |
Application | zarafa | zarafa | 6.40.6 | Yes |
Application | zarafa | zarafa | 6.40.7 | Yes |
Application | zarafa | zarafa | 6.40.8 | Yes |
Application | zarafa | zarafa | 6.40.9 | Yes |
Application | zarafa | zarafa | 6.40.10 | Yes |
Application | zarafa | zarafa | 6.40.11 | Yes |
Application | zarafa | zarafa | 6.40.12 | Yes |
Application | zarafa | zarafa | 6.40.13 | Yes |
Application | zarafa | zarafa | 6.40.14 | Yes |
Application | zarafa | zarafa | 6.40.15 | Yes |
Application | zarafa | zarafa | 6.40.16 | Yes |
Application | zarafa | zarafa | 6.40.17 | Yes |
Application | zarafa | zarafa | 7.0 | Yes |
Application | zarafa | zarafa | 7.0.1 | Yes |
Application | zarafa | zarafa | 7.0.2 | Yes |
Application | zarafa | zarafa | 7.0.3 | Yes |
Application | zarafa | zarafa | 7.0.4 | Yes |
Application | zarafa | zarafa | 7.0.5 | Yes |
Application | zarafa | zarafa | 7.0.6 | Yes |
Application | zarafa | zarafa | 7.0.7 | Yes |
Application | zarafa | zarafa | 7.0.8 | Yes |
Application | zarafa | zarafa | 7.0.9 | Yes |
Application | zarafa | zarafa | 7.0.10 | Yes |
Application | zarafa | zarafa | 7.0.11 | Yes |
Application | zarafa | zarafa | 7.0.12 | Yes |
Application | zarafa | zarafa | 7.0.13 | Yes |
Application | zarafa | zarafa | 7.1.0 | Yes |
Application | zarafa | zarafa | 7.1.1 | Yes |
Application | zarafa | zarafa | 7.1.2 | Yes |
Application | zarafa | zarafa | 7.1.3 | Yes |
Application | zarafa | zarafa | 7.1.4 | Yes |