PT-2014-2769 · Gilles Lamiral · Imapsync
Published
2014-03-12
·
Updated
2023-06-07
·
CVE-2013-4279
CVSS v2.0
5.0
Medium
| Vector | AV:N/AC:L/Au:N/C:P/I:N/A:N |
Name of the Vulnerable Software and Affected Versions
imapsync versions 1.564 and earlier
Description
The issue concerns the default behavior of performing a release check, which results in sending sensitive information, including imapsync version, operating system, and Perl version, to the developer's site.
Recommendations
For versions 1.564 and earlier, consider disabling the release check feature to prevent the transmission of sensitive information.
Exploit
Fix
Information Disclosure
Found an issue in the description? Have something to add? Feel free to write us 👾
Weakness Enumeration
Related Identifiers
Affected Products
Imapsync