Skip to content
Noroxi

neomail records

3 published records for vendor neomail.

Researcher profile

Entered KEV
0 · 0%
Weaponized
0 · 0%
Pre-auth RCE
0
With a fix record
0%
Median publish → KEV
No record has entered KEV

Records by year

    Bar: total · dark part: CISA KEV.

    Recurring classes

      The weakness classes this vendor ships most often: where to look.

      CWE

      Attack profile

      All records

      3 records
      • CVE-2006-0711
        20Monitor

        The (1) addfolder and (2) deletefolder functions in neomail-prefs.pl in NeoMail 1.28 do not validate the Session ID, which allows remote att

        MediumCVSS 5.0No exploitEPSS 1%

        neomail · neomailFeb 15, 2006

      • CVE-2006-0536
        18Monitor

        Cross-site scripting (XSS) vulnerability in neomail.pl in NeoMail 1.27 allows remote attackers to inject arbitrary web script or HTML via th

        MediumCVSS 4.3No exploitEPSS 2%

        neomail · neomailFeb 3, 2006

      • CVE-2006-2138
        18Monitor

        Cross-site scripting (XSS) vulnerability in neomail.pl in NeoMail 1.29 allows remote attackers to inject arbitrary web script or HTML via th

        MediumCVSS 4.3Proof of conceptEPSS 2%

        neomail · neomailMay 2, 2006