Записи mailscanner
10 опубликованных записей вендора mailscanner.
Профиль для исследователя
- Попали в KEV
- 0 · 0 %
- С эксплойтом
- 0 · 0 %
- Pre-auth RCE
- 2
- С записью об исправлении
- 0 %
- Медиана: публикация → KEV
- Ни одна запись не попала в KEV
Повторяющиеся классы
- CWE-59 Improper Link Resolution Before File Access ('Link Following')3
- CWE-20 Improper Input Validation2
- CWE-22 Improper Limitation of a Pathname to a Restricted Directory ('Path Traversal')1
- CWE-311 Missing Encryption of Sensitive Data1
Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.
CWEВсе записи
10 записей| Срочность | CVE | Уязвимость | Критичность | KEV | EPSS | Опубликовано |
|---|---|---|---|---|---|---|
32Наблюдать | CVE-2008-5991Proof of concept | Directory traversal vulnerability in docs.php in MailWatch for MailScanner 1.0.4 and earlier allows remote attackers to include and execute mailscanner · mailscanner · CWE-22 | Высокая7,5 | — | 5,9 % | 28 янв. 2009 г. |
30Наблюдать | CVE-2005-1706Эксплойта нет | Unknown vulnerability in MailScanner 4.41.3 and earlier, related to "incomplete reporting of viruses in zip files," allows remote attackers mailscanner · mailscanner | Высокая7,5 | — | 1,4 % | 24 мая 2005 г. |
30Наблюдать | CVE-2005-3470Эксплойта нет | SQL injection vulnerability in in the authenticate function in MailWatch for MailScanner 1.0.2 allows remote attackers to execute arbitrary mailscanner · mailscanner | Высокая7,5 | — | 1,3 % | 2 нояб. 2005 г. |
27Наблюдать | CVE-2008-5313Эксплойта нет | mailscanner 4.68.8 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symlink attack on certain mailscanner · mailscanner · CWE-59 | Средняя6,9 | — | 0,3 % | 3 дек. 2008 г. |
27Наблюдать | CVE-2008-5312Эксплойта нет | mailscanner 4.55.10 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symlink attack on certainmailscanner · mailscanner · CWE-59 | Средняя6,9 | — | 0,3 % | 3 дек. 2008 г. |
25Наблюдать | CVE-2002-2228Эксплойта нет | MailScanner before 4.0 5-1 and before 3.2 6-1 allows remote attackers to bypass protection via attachments with a filename with (1) extra lemailscanner · mailscanner · CWE-20 | Средняя6,4 | — | 1,1 % | 31 дек. 2002 г. |
22Наблюдать | CVE-2010-3293Эксплойта нет | mailscanner can allow local users to prevent virus signatures from being updatedmailscanner · mailscanner · CWE-20 | Средняя5,5 | — | 0,4 % | 28 окт. 2019 г. |
22Наблюдать | CVE-2010-3292Эксплойта нет | The update{_bad,}_phishing_sites scripts in mailscanner 4.79.11-2 downloads files and trusts them without using encryption (e.g., https) or mailscanner · mailscanner · CWE-311 | Средняя5,5 | — | 0,2 % | 12 нояб. 2019 г. |
21Наблюдать | CVE-2005-3471Эксплойта нет | Directory traversal vulnerability in the ruleset view for MailWatch for MailScanner 1.0.2 allows remote attackers to access arbitrary files.mailscanner · mailscanner | Средняя5,0 | — | 1,7 % | 2 нояб. 2005 г. |
18Наблюдать | CVE-2010-3095Эксплойта нет | mailscanner before 4.79.11-2.1 might allow local users to overwrite arbitrary files via a symlink attack on certain temporary files.mailscanner · mailscanner · CWE-59 | Средняя4,7 | — | 0,3 % | 12 нояб. 2019 г. |
- CVE-2008-599132Наблюдать
Directory traversal vulnerability in docs.php in MailWatch for MailScanner 1.0.4 and earlier allows remote attackers to include and execute
ВысокаяCVSS 7,5Proof of conceptEPSS 6 %mailscanner · mailscanner28 янв. 2009 г.
- CVE-2005-170630Наблюдать
Unknown vulnerability in MailScanner 4.41.3 and earlier, related to "incomplete reporting of viruses in zip files," allows remote attackers
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mailscanner · mailscanner24 мая 2005 г.
- CVE-2005-347030Наблюдать
SQL injection vulnerability in in the authenticate function in MailWatch for MailScanner 1.0.2 allows remote attackers to execute arbitrary
ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %mailscanner · mailscanner2 нояб. 2005 г.
- CVE-2008-531327Наблюдать
mailscanner 4.68.8 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symlink attack on certain
СредняяCVSS 6,9Эксплойта нетEPSS 0 %mailscanner · mailscanner3 дек. 2008 г.
- CVE-2008-531227Наблюдать
mailscanner 4.55.10 and other versions before 4.74.16-1 might allow local users to overwrite arbitrary files via a symlink attack on certain
СредняяCVSS 6,9Эксплойта нетEPSS 0 %mailscanner · mailscanner3 дек. 2008 г.
- CVE-2002-222825Наблюдать
MailScanner before 4.0 5-1 and before 3.2 6-1 allows remote attackers to bypass protection via attachments with a filename with (1) extra le
СредняяCVSS 6,4Эксплойта нетEPSS 1 %mailscanner · mailscanner31 дек. 2002 г.
- CVE-2010-329322Наблюдать
mailscanner can allow local users to prevent virus signatures from being updated
СредняяCVSS 5,5Эксплойта нетEPSS 0 %mailscanner · mailscanner28 окт. 2019 г.
- CVE-2010-329222Наблюдать
The update{_bad,}_phishing_sites scripts in mailscanner 4.79.11-2 downloads files and trusts them without using encryption (e.g., https) or
СредняяCVSS 5,5Эксплойта нетEPSS 0 %mailscanner · mailscanner12 нояб. 2019 г.
- CVE-2005-347121Наблюдать
Directory traversal vulnerability in the ruleset view for MailWatch for MailScanner 1.0.2 allows remote attackers to access arbitrary files.
СредняяCVSS 5,0Эксплойта нетEPSS 2 %mailscanner · mailscanner2 нояб. 2005 г.
- CVE-2010-309518Наблюдать
mailscanner before 4.79.11-2.1 might allow local users to overwrite arbitrary files via a symlink attack on certain temporary files.
СредняяCVSS 4,7Эксплойта нетEPSS 0 %mailscanner · mailscanner12 нояб. 2019 г.