Skip to content
Noroxi

basilix records

7 published records for vendor basilix.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
2
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      All records

      7 records
      • CVE-2001-1044
        32Monitor

        Basilix Webmail 0.9.7beta, and possibly other versions, stores *.class and *.inc files under the document root and does not restrict access,

        HighCVSS 7.5Proof of conceptEPSS 7%

        basilix · basilix webmailJan 11, 2001

      • CVE-2002-1708
        28Monitor

        Cross-site scripting vulnerability (XSS) in BasiliX Webmail 1.10 allows remote attackers to execute arbitrary script as other users by injec

        MediumCVSS 6.8Proof of conceptEPSS 4%

        basilix · basilix webmailDec 31, 2002

      • CVE-2002-1709
        25Monitor

        SQL injection vulnerability in BasiliX Webmail 1.10 allows remote attackers to obtain sensitive information or possibly modify data via the

        MediumCVSS 6.4No exploitEPSS 1%

        basilix · basilix webmailDec 31, 2002

      • CVE-2001-1045
        21Monitor

        Directory traversal vulnerability in basilix.php3 in Basilix Webmail 1.0.3beta and earlier allows remote attackers to read arbitrary files v

        MediumCVSS 5.0Proof of conceptEPSS 4%

        basilix · basilix webmailJul 6, 2001

      • CVE-2006-5167
        21Monitor

        Multiple PHP remote file inclusion vulnerabilities in BasiliX 1.1.1 and earlier allow remote attackers to execute arbitrary PHP code via a U

        MediumCVSS 5.1Proof of conceptEPSS 3%

        basilix · basilix webmailOct 5, 2006

      • CVE-2002-1710
        14Monitor

        The attachment capability in Compose Mail in BasiliX Webmail 1.1.0 does not check whether the attachment was uploaded by the user or came fr

        LowCVSS 3.6No exploitEPSS 0%

        basilix · basilix webmailDec 31, 2002

      • BasiliX 1.1.0 saves attachments in a world readable /tmp/BasiliX directory, which allows local users to read other users' attachments.

        LowCVSS 2.1No exploitEPSS 0%

        basilix · basilix webmailDec 31, 2002