MDaemon records
4 published records for vendor mdaemon.
Researcher profile
- Entered KEV
- 1 · 25%
- Weaponized
- 1 · 25%
- Pre-auth RCE
- 0
- With a fix record
- 0%
- Median publish → KEV
- 185 days
Recurring classes
- CWE-79 Improper Neutralization of Input During Web Page Generation ('Cross-site Scripting')3
- CWE-326 Inadequate Encryption Strength1
The weakness classes this vendor ships most often: where to look.
CWEAttack profile
All records
4 records| Action | CVE | Vulnerability | Severity | KEV | EPSS | Published |
|---|---|---|---|---|---|---|
56Plan | CVE-2024-11182Weaponized | Stored XSS vulnerability in MDaemon Email Servermdaemon · mdaemon · CWE-79 | Medium5.3 | KEV | 17.6% | Nov 15, 2024 |
22Monitor | CVE-2002-1739No exploit | Alt-N Technologies Mdaemon 5.0 through 5.0.6 uses a weak encryption algorithm to store user passwords, which allows local users to crack pasmdaemon · mdaemon · CWE-326 | Medium5.5 | — | 0.2% | Dec 31, 2002 |
21Monitor | CVE-2025-3929No exploit | Stored XSS vulnerability in MDaemon Email Servermdaemon · email server · CWE-79 | Medium5.3 | — | 0.6% | Apr 29, 2025 |
19Monitor | CVE-2023-52269No exploit | MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message Content Filtering rule.mdaemon · securitygateway · CWE-79 | Medium4.8 | — | 0.4% | Dec 30, 2023 |
- CVE-2024-1118256Plan
Stored XSS vulnerability in MDaemon Email Server
MediumCVSS 5.3KEVWeaponizedEPSS 18%mdaemon · mdaemonNov 15, 2024
- CVE-2002-173922Monitor
Alt-N Technologies Mdaemon 5.0 through 5.0.6 uses a weak encryption algorithm to store user passwords, which allows local users to crack pas
MediumCVSS 5.5No exploitEPSS 0%mdaemon · mdaemonDec 31, 2002
- CVE-2025-392921Monitor
Stored XSS vulnerability in MDaemon Email Server
MediumCVSS 5.3No exploitEPSS 1%mdaemon · email serverApr 29, 2025
- CVE-2023-5226919Monitor
MDaemon SecurityGateway through 9.0.3 allows XSS via a crafted Message Content Filtering rule.
MediumCVSS 4.8No exploitEPSS 0%mdaemon · securitygatewayDec 30, 2023