inter7 records
18 published records for vendor inter7.
Researcher profile
- Entered KEV
- 0 · 0%
- Weaponized
- 0 · 0%
- Pre-auth RCE
- 5
- With a fix record
- 44.4%
- Median publish → KEV
- No record has entered KEV
Records by year
Bar: total · dark part: CISA KEV.
All records
18 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
44Plan | CVE-2000-0091Proof of concept | Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or passworinter7 · vpopmail | Critical10.0 | — | 12.9% | Jan 21, 2000 |
33Monitor | CVE-2004-0777Proof of concept | Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUinter7 · courier-imap · CWE-134 | High7.5 | — | 10.9% | Oct 20, 2004 |
31Monitor | CVE-2006-1141No exploit | Buffer overflow in qmailadmin.c in QmailAdmin before 1.2.10 allows remote attackers to execute arbitrary code via a long PATH_INFO environmeinter7 · qmailadmin | High7.5 | — | 4.6% | Mar 10, 2006 |
31Monitor | CVE-2004-0224No exploit | Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.double precision incorporated · courier mta | High7.5 | — | 3.3% | Apr 15, 2004 |
31Monitor | CVE-2004-2239No exploit | Buffer overflow in vsybase.c in vpopmail 5.4.2 and earlier might allow attackers to cause a denial of service or execute arbitrary code.inter7 · vpopmail \(vchkpw\) | High7.5 | — | 2.8% | Dec 31, 2004 |
31Monitor | CVE-2007-0558Proof of concept | PHP remote file inclusion vulnerability in modules/mail/main.php in Inter7 vHostAdmin 1.0 allows remote attackers to execute arbitrary PHP cinter7 · vhostadmin | High7.5 | — | 2.5% | Jan 30, 2007 |
31Monitor | CVE-2005-1308Proof of concept | SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desireinter7 · sqwebmail | High7.5 | — | 2.3% | Apr 15, 2005 |
31Monitor | CVE-2006-2346No exploit | vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleinter7 · vpopmail \(vchkpw\) | High7.5 | — | 1.7% | May 12, 2006 |
30Monitor | CVE-2003-0040No exploit | SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the udouble precision incorporated · courier mta | High7.5 | — | 1.2% | Feb 19, 2003 |
28Monitor | CVE-2004-0591Proof of concept | Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote atinter7 · sqwebmail | Medium6.8 | — | 5.0% | Aug 6, 2004 |
20Monitor | CVE-2000-0583No exploit | vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows reinter7 · vpopmail vchkpw | Medium5.0 | — | 1.7% | Jun 30, 2000 |
20Monitor | CVE-2004-2313No exploit | Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabledinter7 · sqwebmail | Medium5.0 | — | 1.4% | Dec 31, 2004 |
20Monitor | CVE-2004-2238No exploit | Format string vulnerability in vsybase.c in vpopmail 5.4.2 and earlier has unknown impact and attack vectors.inter7 · vpopmail \(vchkpw\) | Medium5.0 | — | 1.3% | Dec 31, 2004 |
18Monitor | CVE-2005-2769Proof of concept | Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly other versions allows remote attackers to inject arbitrary web scriinter7 · sqwebmail | Medium4.3 | — | 2.7% | Sep 2, 2005 |
18Monitor | CVE-2005-2820No exploit | Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via an e-mail mesinter7 · sqwebmail | Medium4.3 | — | 2.2% | Sep 7, 2005 |
18Monitor | CVE-2005-2724No exploit | Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via a file attachinter7 · sqwebmail | Medium4.3 | — | 1.8% | Aug 30, 2005 |
18Monitor | CVE-2002-1414Proof of concept | Buffer overflow in qmailadmin allows local users to gain privileges via a long QMAILADMIN_TEMPLATEDIR environment variable.inter7 · qmailadmin | Medium4.6 | — | 0.9% | Apr 11, 2003 |
18Monitor | CVE-2001-0990No exploit | Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into the libvpopmail.a liinter7 · vpopmail | Medium4.6 | — | 0.3% | Sep 4, 2001 |
- CVE-2000-009144Plan
Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or passwor
CriticalCVSS 10.0Proof of conceptEPSS 13%inter7 · vpopmailJan 21, 2000
- CVE-2004-077733Monitor
Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBU
HighCVSS 7.5Proof of conceptEPSS 11%inter7 · courier-imapOct 20, 2004
- CVE-2006-114131Monitor
Buffer overflow in qmailadmin.c in QmailAdmin before 1.2.10 allows remote attackers to execute arbitrary code via a long PATH_INFO environme
HighCVSS 7.5No exploitEPSS 5%inter7 · qmailadminMar 10, 2006
- CVE-2004-022431Monitor
Multiple buffer overflows in (1) iso2022jp.c or (2) shiftjis.c for Courier-IMAP before 3.0.0, Courier before 0.45, and SqWebMail before 4.0.
HighCVSS 7.5No exploitEPSS 3%double precision incorporated · courier mtaApr 15, 2004
- CVE-2004-223931Monitor
Buffer overflow in vsybase.c in vpopmail 5.4.2 and earlier might allow attackers to cause a denial of service or execute arbitrary code.
HighCVSS 7.5No exploitEPSS 3%inter7 · vpopmail \(vchkpw\)Dec 31, 2004
- CVE-2007-055831Monitor
PHP remote file inclusion vulnerability in modules/mail/main.php in Inter7 vHostAdmin 1.0 allows remote attackers to execute arbitrary PHP c
HighCVSS 7.5Proof of conceptEPSS 2%inter7 · vhostadminJan 30, 2007
- CVE-2005-130831Monitor
SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desire
HighCVSS 7.5Proof of conceptEPSS 2%inter7 · sqwebmailApr 15, 2005
- CVE-2006-234631Monitor
vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cle
HighCVSS 7.5No exploitEPSS 2%inter7 · vpopmail \(vchkpw\)May 12, 2006
- CVE-2003-004030Monitor
SQL injection vulnerability in the PostgreSQL auth module for courier 0.40 and earlier allows remote attackers to execute SQL code via the u
HighCVSS 7.5No exploitEPSS 1%double precision incorporated · courier mtaFeb 19, 2003
- CVE-2004-059128Monitor
Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote at
MediumCVSS 6.8Proof of conceptEPSS 5%inter7 · sqwebmailAug 6, 2004
- CVE-2000-058320Monitor
vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows re
MediumCVSS 5.0No exploitEPSS 2%inter7 · vpopmail vchkpwJun 30, 2000
- CVE-2004-231320Monitor
Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled
MediumCVSS 5.0No exploitEPSS 1%inter7 · sqwebmailDec 31, 2004
- CVE-2004-223820Monitor
Format string vulnerability in vsybase.c in vpopmail 5.4.2 and earlier has unknown impact and attack vectors.
MediumCVSS 5.0No exploitEPSS 1%inter7 · vpopmail \(vchkpw\)Dec 31, 2004
- CVE-2005-276918Monitor
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 and possibly other versions allows remote attackers to inject arbitrary web scri
MediumCVSS 4.3Proof of conceptEPSS 3%inter7 · sqwebmailSep 2, 2005
- CVE-2005-282018Monitor
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via an e-mail mes
MediumCVSS 4.3No exploitEPSS 2%inter7 · sqwebmailSep 7, 2005
- CVE-2005-272418Monitor
Cross-site scripting (XSS) vulnerability in SqWebMail 5.0.4 allows remote attackers to inject arbitrary web script or HTML via a file attach
MediumCVSS 4.3No exploitEPSS 2%inter7 · sqwebmailAug 30, 2005
- CVE-2002-141418Monitor
Buffer overflow in qmailadmin allows local users to gain privileges via a long QMAILADMIN_TEMPLATEDIR environment variable.
MediumCVSS 4.6Proof of conceptEPSS 1%inter7 · qmailadminApr 11, 2003
- CVE-2001-099018Monitor
Inter7 vpopmail 4.10.35 and earlier, when using the MySQL module, compiles authentication information in cleartext into the libvpopmail.a li
MediumCVSS 4.6No exploitEPSS 0%inter7 · vpopmailSep 4, 2001