CVE-2002-1782: Low severity University of Washington uw-imap vulnerability
The default configuration of University of Washington IMAP daemon (wu-imapd), when running on a system that does not allow shell access, allows a local user with a valid IMAP account to read arbitrary files as that user.
Affected Software
Event History
Frequently Asked Questions
What is the severity of CVE-2002-1782?
CVE-2002-1782 has been classified as a moderate severity vulnerability due to its potential for unauthorized file access.
How do I fix CVE-2002-1782?
To mitigate CVE-2002-1782, configure the University of Washington IMAP daemon to restrict access to sensitive files.
Who is affected by CVE-2002-1782?
CVE-2002-1782 primarily affects local users with valid IMAP accounts on systems running the vulnerable version of the University of Washington IMAP daemon.
What systems are impacted by CVE-2002-1782?
CVE-2002-1782 impacts systems running the default configuration of University of Washington IMAP daemon version 2001.0a.
Can CVE-2002-1782 be exploited remotely?
No, CVE-2002-1782 can only be exploited locally by users with valid IMAP accounts on the affected system.