İçeriğe atla
Noroxi

IceWarp kayıtları

icewarp üreticisine ait 70 yayımlanmış kayıt.

Tüm kayıtlar

70 kayıt
  • CVE-2015-1503
    47Planlayın

    Multiple directory traversal vulnerabilities in IceWarp Mail Server before 11.2 allow remote attackers to read arbitrary files via a (1) ..

    YüksekCVSS 7,5Kavram kanıtıEPSS %58

    icewarp · mail server8 May 2018

  • CVE-2019-12593
    42Planlayın

    IceWarp Mail Server through 10.4.4 is prone to a local file inclusion vulnerability via webmail/calendar/minimizer/index.php?style=..%5c dir

    YüksekCVSS 7,5Kavram kanıtıEPSS %41

    icewarp · mail server3 Haz 2019

  • CVE-2023-39699
    39İzleyin

    IceWarp Mail Server v10.4.5 was discovered to contain a local file inclusion (LFI) vulnerability via the component /calendar/minimizer/index

    KritikCVSS 9,8İstismar yokEPSS %1

    icewarp · mail server24 Ağu 2023

  • CVE-2022-35115
    39İzleyin

    IceWarp WebClient DC2 - Update 2 Build 9 (13.0.2.9) was discovered to contain a SQL injection vulnerability via the search parameter at /web

    KritikCVSS 9,8İstismar yokEPSS %1

    icewarp · webclient dc223 Ağu 2022

  • CVE-2020-14066
    36İzleyin

    IceWarp Email Server 12.3.0.1 allows remote attackers to upload JavaScript files that are dangerous for clients to access.

    YüksekCVSS 8,8Kavram kanıtıEPSS %2

    icewarp · mail server15 Tem 2020

  • CVE-2005-4556
    33İzleyin

    PHP remote file include vulnerability in IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0

    YüksekCVSS 7,5Kavram kanıtıEPSS %11

    icewarp · web mail28 Ara 2005

  • CVE-2009-1516
    31İzleyin

    Stack-based buffer overflow in the IceWarpServer.APIObject ActiveX control in api.dll in IceWarp Merak Mail Server 9.4.1 might allow context

    YüksekCVSS 7,5Kavram kanıtıEPSS %3

    icewarp · merak mail server4 May 2009

  • CVE-2010-5335
    31İzleyin

    IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.

    YüksekCVSS 7,5İstismar yokEPSS %3

    icewarp · webclient11 Eki 2019

  • CVE-2010-5334
    31İzleyin

    IceWarp Webclient before 10.2.1 has a directory traversal vulnerability.

    YüksekCVSS 7,5İstismar yokEPSS %3

    icewarp · webclient11 Eki 2019

  • CVE-2004-1670
    31İzleyin

    Multiple directory traversal vulnerabilities Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7, and possibly other versions, allow remote

    YüksekCVSS 7,5İstismar yokEPSS %2

    icewarp · web mail10 Eyl 2004

  • CVE-2004-1673
    31İzleyin

    accountsettings_add.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allow remote attackers to create

    YüksekCVSS 7,5İstismar yokEPSS %2

    icewarp · web mail12 Eki 2004

  • CVE-2004-1672
    31İzleyin

    attachment.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to view other use

    YüksekCVSS 7,5İstismar yokEPSS %2

    icewarp · web mail12 Eki 2004

  • CVE-2004-1674
    30İzleyin

    viewaction.html in Merak Mail Server 7.4.5 with Icewarp Web Mail 5.2.7 and possibly other versions allows remote attackers to (1) delete arb

    YüksekCVSS 7,5İstismar yokEPSS %2

    icewarp · web mail12 Eki 2004

  • CVE-2002-0258
    30İzleyin

    Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote att

    YüksekCVSS 7,5İstismar yokEPSS %1

    icewarp · web mail29 May 2002

  • CVE-2005-4558
    29İzleyin

    IceWarp Web Mail 5.5.1, as used by Merak Mail Server 8.3.0r and VisNetic Mail Server version 8.3.0 build 1, does not properly restrict accep

    OrtaCVSS 6,5Kavram kanıtıEPSS %8

    icewarp · web mail28 Ara 2005

  • CVE-2020-8512
    28İzleyin

    In IceWarp Webmail Server through 11.4.4.1, there is XSS in the /webmail/ color parameter.

    OrtaCVSS 6,1Kavram kanıtıEPSS %15

    icewarp · icewarp server31 Oca 2020

  • CVE-2005-0322
    28İzleyin

    MERAK Mail Server 7.6.0 with Icewarp Web Mail 5.3.0 and Mail Server 7.6.4r with Icewarp Mail Server 5.3.2 uses weak encryption in the (1) us

    YüksekCVSS 7,2İstismar yokEPSS %0

    icewarp · web mail2 May 2005

  • CVE-2009-1468
    27İzleyin

    Multiple SQL injection vulnerabilities in the search form in server/webmail.php in the Groupware component in IceWarp eMail Server and WebMa

    OrtaCVSS 6,5Kavram kanıtıEPSS %2

    icewarp · email server5 May 2009

  • CVE-2020-27982
    26İzleyin

    IceWarp 11.4.5.0 allows XSS via the language parameter.

    OrtaCVSS 6,1Kavram kanıtıEPSS %5

    icewarp · mail server2 Kas 2020

  • CVE-2011-3579
    26İzleyin

    server/webmail.php in IceWarp WebMail in IceWarp Mail Server before 10.3.3 allows remote attackers to read arbitrary files, and possibly sen

    OrtaCVSS 6,4Kavram kanıtıEPSS %5

    icewarp · mail server30 Eyl 2011

  • CVE-2020-14065
    26İzleyin

    IceWarp Email Server 12.3.0.1 allows remote attackers to upload files and consume disk space.

    OrtaCVSS 6,5Kavram kanıtıEPSS %1

    icewarp · mail server15 Tem 2020

  • CVE-2020-14064
    26İzleyin

    IceWarp Email Server 12.3.0.1 has Incorrect Access Control for user accounts.

    OrtaCVSS 6,5Kavram kanıtıEPSS %1

    icewarp · mail server15 Tem 2020

  • CVE-2017-7855
    25İzleyin

    In the webmail component in IceWarp Server 11.3.1.5, there was an XSS vulnerability discovered in the "language" parameter.

    OrtaCVSS 6,1Kavram kanıtıEPSS %2

    icewarp · server31 Ağu 2017

  • CVE-2021-36580
    24İzleyin

    Open Redirect vulnerability exists in IceWarp MailServer IceWarp Server Deep Castle 2 Update 1 (13.0.1.2) via the referer parameter.

    OrtaCVSS 6,1Kavram kanıtıEPSS %2

    icewarp · icewarp server27 Tem 2023

  • CVE-2023-39700
    24İzleyin

    IceWarp Mail Server v10.4.5 was discovered to contain a reflected cross-site scripting (XSS) vulnerability via the color parameter.

    OrtaCVSS 6,1Kavram kanıtıEPSS %1

    icewarp · mail server24 Ağu 2023