Security Advisory

CVE-2014-0103

2.1

Vulnerability Description

WebAccess in Zarafa before 7.1.10 and WebApp before 1.6 stores credentials in cleartext, which allows local Apache users to obtain sensitive information by reading the PHP session files.
Published Date July 29, 2014
Official Source NIST NVD Advisory