Skip to content
Noroxi

magicwinmail records

3 published records for vendor magicwinmail.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

  1. 17
  2. 18
  3. 24

Bar: total · dark part: CISA KEV.

All records

3 records
  • CVE-2018-5700
    36Monitor

    Winmail Server through 6.2 allows remote code execution by authenticated users who leverage directory traversal in a netdisk.php copy_folder

    HighCVSS 8.8No exploitEPSS 3%

    magicwinmail · winmail serverJan 14, 2018

  • CVE-2017-9846
    36Monitor

    Winmail Server 6.1 allows remote code execution by authenticated users who leverage directory traversal in a netdisk.php move_folder_file ca

    HighCVSS 8.8No exploitEPSS 3%

    magicwinmail · winmail serverJun 24, 2017

  • Winmail Server 4.4 is vulnerable to f_user=%22%3E%3Csvg%20onload Cross Site Scripting (XSS).

    MediumCVSS 6.1No exploitEPSS 0%

    magicwinmail · winmail serverDec 18, 2024