VendorsZarafawebapp1.6
Vulnerabilities

Zarafa Webapp 1.6

Ranked by severity, then by exploit likelihood. Click a CVE ID for its full record.

1CVEs
CVE-2014-5447
Zarafa WebAccess 7.1.10 and WebApp 1.6 beta uses weak permissions (644) for config.php, which allows local users to obtain sensitive information by reading the PHP session files. NOTE: this vulnerability exists because of an incomplete fix for CVE-2014-0103.
Published 2014-10-20 · Modified
2.1EPSS 0.004