Перейти к содержимому
Noroxi

Записи totemo

9 опубликованных записей вендора totemo.

Профиль для исследователя

Попали в KEV
0 · 0 %
С эксплойтом
0 · 0 %
Pre-auth RCE
0
С записью об исправлении
0 %
Медиана: публикация → KEV
Ни одна запись не попала в KEV

Записи по годам

  1. 18
  2. 19
  3. 20
  4. 24

Столбик: всего · тёмная часть: CISA KEV.

Повторяющиеся классы

Классы уязвимостей, которые чаще всего встречаются у этого вендора: куда смотреть.

CWE

Все записи

9 записей
  • CVE-2018-6563
    36Наблюдать

    Multiple cross-site request forgery (CSRF) vulnerabilities in totemomail Encryption Gateway before 6.0.0_Build_371 allow remote attackers to

    ВысокаяCVSS 8,8Proof of conceptEPSS 2 %

    totemo · encryption gateway20 июн. 2018 г.

  • CVE-2018-6562
    30Наблюдать

    totemomail Encryption Gateway before 6.0_b567 allows remote attackers to obtain sensitive information about user sessions and encryption key

    ВысокаяCVSS 7,5Эксплойта нетEPSS 1 %

    totemo · totemomail encryption gateway18 мая 2018 г.

  • CVE-2018-15511
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in the 'Notification template' feature of totemomail 6.0.0 build 570 allows remote attackers to inj

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    totemo · totemomail30 авг. 2019 г.

  • CVE-2018-15512
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in the 'Authorisation Service' feature of totemomail 6.0.0 build 570 allows remote attackers to inj

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    totemo · totemomail30 авг. 2019 г.

  • CVE-2018-15510
    24Наблюдать

    Cross-site scripting (XSS) vulnerability in the 'Certificate' feature of totemomail 6.0.0 build 570 allows remote attackers to inject arbitr

    СредняяCVSS 6,1Эксплойта нетEPSS 1 %

    totemo · totemomail30 авг. 2019 г.

  • CVE-2024-28063
    24Наблюдать

    Kiteworks Totemomail through 7.0.0 allows /responsiveUI/EnvelopeOpenServlet envelopeRecipient reflected XSS.

    СредняяCVSS 6,1Эксплойта нетEPSS 0 %

    totemo · totemomail18 мая 2024 г.

  • CVE-2018-15513
    21Наблюдать

    Log viewer in totemomail 6.0.0 build 570 allows access to sessionIDs of high privileged users by leveraging access to a read-only auditor ro

    СредняяCVSS 5,3Эксплойта нетEPSS 1 %

    totemo · totemomail30 авг. 2019 г.

  • CVE-2019-17189
    21Наблюдать

    totemodata 3.0.0_b936 has XSS via a folder name.

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    totemo · totemodata22 окт. 2019 г.

  • CVE-2020-7918
    21Наблюдать

    An insecure direct object reference in webmail in totemo totemomail 7.0.0 allows an authenticated remote user to read and modify mail folder

    СредняяCVSS 5,4Эксплойта нетEPSS 1 %

    totemo · totemomail27 мар. 2020 г.