ZeroHour

CVE-2022-24732

CVSS 3.1
8.8 high
EPSS
<1%p34
Published
()
Modified
Description

Maddy Mail Server is an open source SMTP compatible email server. Versions of maddy prior to 0.5.4 do not implement password expiry or account expiry checking when authenticating using PAM. Users are advised to upgrade. Users unable to upgrade should manually remove expired accounts via existing filtering mechanisms.

Vendors
maddy project
Products
maddy
Weakness
CWE-324, CWE-613
Vector
CVSS:3.1/AV:N/AC:L/PR:L/UI:N/S:U/C:H/I:H/A:H

In the news

No ingested article mentions this CVE yet.