Security Advisory
CVE-2014-5448
CVE vulnerability detail — eXtreme Datacenter Security Operations
Description
Zarafa 5.00 uses world-readable permissions for the files in the log directory, which allows local users to obtain sensitive information by reading the log files.