Hosts vulnerable to CVE-2026-0394

CVE-2026-0394 — severity medium, CVSS 5.3 — 1 affected host indexed by QROS Explore.

About CVE-2026-0394

When dovecot has been configured to use per-domain passwd files, and they are placed one path component above /etc, or slash has been added to allowed characters, path traversal can happen if the domain component is directory partial. This allows inadvertently reading /etc/passwd (or some other path

Showing 1 of 1 host, ranked by risk score.

Search all CVE-2026-0394 hosts in Explore

Open in Explore →