CVE-2011-3372

Publication date

2011-12-24 19:00:00

Family

redhat

State

PUBLISHED

Description

imap/nntpd.c in the NNTP server (nntpd) for Cyrus IMAPd 2.4.x before 2.4.12 allows remote attackers to bypass authentication by sending an AUTHINFO USER command without sending an additional AUTHINFO PASS command.