evolution-data-server3 3.0.3 through 3.2.1 used insecure (non-SSL) connection when attempting to store sent email messages into the Sent folder, when the Sent folder was located on the remote server. An attacker could use this flaw to obtain login credentials of the victim.
History

No history.

cve-icon MITRE

Status: PUBLISHED

Assigner: redhat

Published: 2019-11-25T22:30:00

Updated: 2024-08-06T23:29:56.744Z

Reserved: 2011-08-30T00:00:00

Link: CVE-2011-3355

cve-icon Vulnrichment

No data.

cve-icon NVD

Status : Analyzed

Published: 2019-11-25T23:15:10.633

Modified: 2019-12-14T14:28:30.653

Link: CVE-2011-3355

cve-icon Redhat

Severity : Low

Publid Date: 2011-04-19T00:00:00Z

Links: CVE-2011-3355 - Bugzilla