CVE-2016-6188: Alinto Sogo

Medium severity, CVSS 6.5. EPSS: 2.2% chance of exploitation in the next 30 days.

Memory leak in SOGo 2.3.7 allows remote attackers to cause a denial of service (memory consumption) via a large number of attempts to upload a large attachment, related to temporary files.

Affected products

  • Alinto Sogo: version 2.3.7 only

Published 2017-02-03. Last modified 2026-06-17.