Skip to content
Noroxi

MailEnable records

90 published records for vendor mailenable.

All records

90 records
  • CVE-2006-6423
    61This week

    Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.

    CriticalCVSS 10.0WeaponizedEPSS 71%

    mailenable · mailenable enterpriseDec 11, 2006

  • Cross Site Scripting (XSS) vulnerability in MailEnable before v10 allows a remote attacker to execute arbitrary code via the failure.aspx co

    CriticalCVSS 9.8Proof of conceptEPSS 55%

    mailenable · mailenableJun 3, 2025

  • Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users to execute arbitrar

    HighCVSS 7.2WeaponizedEPSS 85%

    mailenable · mailenable professionalJul 18, 2005

  • Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute a

    HighCVSS 7.5WeaponizedEPSS 73%

    mailenable · mailenable enterpriseMay 2, 2005

  • Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.

    HighCVSS 7.5WeaponizedEPSS 64%

    mailenable · mailenable enterpriseOct 5, 2005

  • Buffer overflow in MailEnable Imapd (MEIMAP.exe) allows remote attackers to execute arbitrary code via a long LOGIN command.

    CriticalCVSS 10.0No exploitEPSS 16%

    mailenable · imapdMay 2, 2005

  • Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterpr

    CriticalCVSS 10.0No exploitEPSS 6%

    mailenable · mailenable enterpriseDec 19, 2006

  • Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Ed

    CriticalCVSS 10.0No exploitEPSS 2%

    mailenable · mailenable enterpriseApr 15, 2006

  • MailEnable before 8.60 allows XXE via an XML document in the request.aspx Options parameter.

    CriticalCVSS 10.0No exploitEPSS 2%

    mailenable · mailenableJan 16, 2019

  • Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enter

    CriticalCVSS 10.0No exploitEPSS 2%

    mailenable · mailenable enterpriseFeb 12, 2007

  • Stack-based buffer overflow in the IMAP service in MailEnable Enterprise and Professional Editions 2.37 and earlier allows remote authentica

    CriticalCVSS 9.0Proof of conceptEPSS 12%

    mailenable · mailenable enterpriseMar 6, 2007

  • MailEnable before 8.60 allows Privilege Escalation because admin accounts could be created as a consequence of %0A mishandling in AUTH.TAB a

    CriticalCVSS 9.8No exploitEPSS 2%

    mailenable · mailenableJan 16, 2019

  • Unknown vulnerability in the HTTPMail service in MailEnable Professional before 1.6 has unknown impact and attack vectors.

    CriticalCVSS 10.0No exploitEPSS 1%

    mailenable · mailenable professionalJul 12, 2005

  • CVE-2006-5177
    39Monitor

    The NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to (1) execute arbitrary code via unspecif

    CriticalCVSS 9.3Proof of conceptEPSS 7%

    mailenable · mailenable enterpriseOct 10, 2006

  • CVE-2006-5176
    39Monitor

    Buffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code v

    CriticalCVSS 9.3No exploitEPSS 5%

    mailenable · mailenable enterpriseOct 10, 2006

  • MailEnable Enterprise Premium 10.23 was vulnerable to XML External Entity Injection (XXE) attacks that could be exploited by an unauthentica

    CriticalCVSS 9.8No exploitEPSS 1%

    mailenable · mailenableJul 8, 2019

  • CVE-2008-1277
    38Monitor

    The IMAP service (MEIMAPS.exe) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allows remote attackers to cause a

    CriticalCVSS 9.0Proof of conceptEPSS 8%

    mailenable · mailenable enterpriseMar 10, 2008

  • CVE-2008-1276
    38Monitor

    Multiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow

    CriticalCVSS 9.0Proof of conceptEPSS 7%

    mailenable · mailenable enterpriseMar 10, 2008

  • CVE-2015-9277
    37Monitor

    MailEnable before 8.60 allows Directory Traversal for reading the messages of other users, uploading files, and deleting files because "/../

    CriticalCVSS 9.1No exploitEPSS 2%

    mailenable · mailenableJan 16, 2019

  • CVE-2005-2223
    35Monitor

    Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a d

    MediumCVSS 5.0No exploitEPSS 51%

    mailenable · mailenable professionalJul 12, 2005

  • MailEnable Enterprise Premium 10.23 did not use appropriate access control checks in a number of areas.

    HighCVSS 8.8No exploitEPSS 1%

    mailenable · mailenableJul 8, 2019

  • Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where the IIS user had pe

    HighCVSS 8.8No exploitEPSS 1%

    mailenable · mailenableJan 13, 2023

  • CVE-2004-2501
    34Monitor

    Buffer overflow in the IMAP service of MailEnable Professional Edition 1.52 and Enterprise Edition 1.01 allows remote attackers to execute a

    HighCVSS 7.5Proof of conceptEPSS 14%

    mailenable · mailenable enterpriseDec 31, 2004

  • MailEnable Enterprise Premium < 10.55 Authorization Bypass via WebAdmin

    HighCVSS 8.7No exploitEPSS 1%

    mailenable · mailenableMay 8, 2026

  • MailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAISP.DLL

    HighCVSS 8.5No exploitEPSS 0%

    mailenable · mailenableDec 10, 2025