İçeriğe atla
Noroxi

MailEnable kayıtları

mailenable üreticisine ait 90 yayımlanmış kayıt.

Araştırmacı profili

KEV’e giren
0 · %0
Silahlaştırılmış
4 · %4,4
Pre-auth RCE
26
Düzeltme kaydı olan
%2,2
Yayından KEV’e ortanca
KEV’e giren kayıt yok

Tüm kayıtlar

90 kayıt
  • CVE-2006-6423
    61Bu hafta

    Stack-based buffer overflow in the IMAP service for MailEnable Professional and Enterprise Edition 2.0 through 2.35, Professional Edition 1.

    KritikCVSS 10,0SilahlaştırılmışEPSS %71

    mailenable · mailenable enterprise11 Ara 2006

  • CVE-2025-44148
    55Planlayın

    Cross Site Scripting (XSS) vulnerability in MailEnable before v10 allows a remote attacker to execute arbitrary code via the failure.aspx co

    KritikCVSS 9,8Kavram kanıtıEPSS %55

    mailenable · mailenable3 Haz 2025

  • CVE-2005-2278
    53Planlayın

    Stack-based buffer overflow in the IMAP daemon (imapd) in MailEnable Professional 1.54 allows remote authenticated users to execute arbitrar

    YüksekCVSS 7,2SilahlaştırılmışEPSS %85

    mailenable · mailenable professional18 Tem 2005

  • CVE-2005-1348
    52Planlayın

    Buffer overflow in HTTPMail in MailEnable Enterprise 1.04 and earlier and Professional 1.54 and earlier allows remote attackers to execute a

    YüksekCVSS 7,5SilahlaştırılmışEPSS %73

    mailenable · mailenable enterprise2 May 2005

  • CVE-2005-3155
    49Planlayın

    Buffer overflow in the W3C logging for MailEnable Enterprise 1.1 and Professional 1.6 allows remote attackers to execute arbitrary code.

    YüksekCVSS 7,5SilahlaştırılmışEPSS %64

    mailenable · mailenable enterprise5 Eki 2005

  • CVE-2005-1015
    45Planlayın

    Buffer overflow in MailEnable Imapd (MEIMAP.exe) allows remote attackers to execute arbitrary code via a long LOGIN command.

    KritikCVSS 10,0İstismar yokEPSS %16

    mailenable · imapd2 May 2005

  • CVE-2006-6605
    42Planlayın

    Stack-based buffer overflow in the POP service in MailEnable Standard 1.98 and earlier; Professional 1.84, and 2.35 and earlier; and Enterpr

    KritikCVSS 10,0İstismar yokEPSS %6

    mailenable · mailenable enterprise19 Ara 2006

  • CVE-2006-1792
    41Planlayın

    Unspecified vulnerability in the POP service in MailEnable Standard Edition before 1.94, Professional Edition before 1.74, and Enterprise Ed

    KritikCVSS 10,0İstismar yokEPSS %2

    mailenable · mailenable enterprise15 Nis 2006

  • CVE-2015-9280
    41Planlayın

    MailEnable before 8.60 allows XXE via an XML document in the request.aspx Options parameter.

    KritikCVSS 10,0İstismar yokEPSS %2

    mailenable · mailenable16 Oca 2019

  • CVE-2006-6997
    41Planlayın

    Unspecified vulnerability in a cryptographic feature in MailEnable Standard Edition before 1.93, Professional Edition before 1.73, and Enter

    KritikCVSS 10,0İstismar yokEPSS %2

    mailenable · mailenable enterprise12 Şub 2007

  • CVE-2007-1301
    40Planlayın

    Stack-based buffer overflow in the IMAP service in MailEnable Enterprise and Professional Editions 2.37 and earlier allows remote authentica

    KritikCVSS 9,0Kavram kanıtıEPSS %12

    mailenable · mailenable enterprise6 Mar 2007

  • CVE-2015-9278
    40Planlayın

    MailEnable before 8.60 allows Privilege Escalation because admin accounts could be created as a consequence of %0A mishandling in AUTH.TAB a

    KritikCVSS 9,8İstismar yokEPSS %2

    mailenable · mailenable16 Oca 2019

  • CVE-2005-2222
    40Planlayın

    Unknown vulnerability in the HTTPMail service in MailEnable Professional before 1.6 has unknown impact and attack vectors.

    KritikCVSS 10,0İstismar yokEPSS %1

    mailenable · mailenable professional12 Tem 2005

  • CVE-2006-5177
    39İzleyin

    The NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to (1) execute arbitrary code via unspecif

    KritikCVSS 9,3Kavram kanıtıEPSS %7

    mailenable · mailenable enterprise10 Eki 2006

  • CVE-2006-5176
    39İzleyin

    Buffer overflow in NTLM authentication in MailEnable Professional 2.0 and Enterprise 2.0 allows remote attackers to execute arbitrary code v

    KritikCVSS 9,3İstismar yokEPSS %5

    mailenable · mailenable enterprise10 Eki 2006

  • CVE-2019-12924
    39İzleyin

    MailEnable Enterprise Premium 10.23 was vulnerable to XML External Entity Injection (XXE) attacks that could be exploited by an unauthentica

    KritikCVSS 9,8İstismar yokEPSS %1

    mailenable · mailenable8 Tem 2019

  • CVE-2008-1277
    38İzleyin

    The IMAP service (MEIMAPS.exe) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allows remote attackers to cause a

    KritikCVSS 9,0Kavram kanıtıEPSS %8

    mailenable · mailenable enterprise10 Mar 2008

  • CVE-2008-1276
    38İzleyin

    Multiple buffer overflows in the IMAP service (MEIMAPS.EXE) in MailEnable Professional Edition and Enterprise Edition 3.13 and earlier allow

    KritikCVSS 9,0Kavram kanıtıEPSS %7

    mailenable · mailenable enterprise10 Mar 2008

  • CVE-2015-9277
    37İzleyin

    MailEnable before 8.60 allows Directory Traversal for reading the messages of other users, uploading files, and deleting files because "/../

    KritikCVSS 9,1İstismar yokEPSS %2

    mailenable · mailenable16 Oca 2019

  • CVE-2005-2223
    35İzleyin

    Unknown vulnerability in the SMTP service in MailEnable Standard before 1.9 and Professional before 1.6 allows remote attackers to cause a d

    OrtaCVSS 5,0İstismar yokEPSS %51

    mailenable · mailenable professional12 Tem 2005

  • CVE-2019-12926
    35İzleyin

    MailEnable Enterprise Premium 10.23 did not use appropriate access control checks in a number of areas.

    YüksekCVSS 8,8İstismar yokEPSS %1

    mailenable · mailenable8 Tem 2019

  • CVE-2022-42136
    35İzleyin

    Authenticated mail users, under specific circumstances, could add files with unsanitized content in public folders where the IIS user had pe

    YüksekCVSS 8,8İstismar yokEPSS %1

    mailenable · mailenable13 Oca 2023

  • CVE-2004-2501
    34İzleyin

    Buffer overflow in the IMAP service of MailEnable Professional Edition 1.52 and Enterprise Edition 1.01 allows remote attackers to execute a

    YüksekCVSS 7,5Kavram kanıtıEPSS %14

    mailenable · mailenable enterprise31 Ara 2004

  • CVE-2026-44400
    34İzleyin

    MailEnable Enterprise Premium < 10.55 Authorization Bypass via WebAdmin

    YüksekCVSS 8,7İstismar yokEPSS %1

    mailenable · mailenable8 May 2026

  • CVE-2025-34421
    34İzleyin

    MailEnable < 10.54 DLL Hijacking via Unsafe Loading of MEAISP.DLL

    YüksekCVSS 8,5İstismar yokEPSS %0

    mailenable · mailenable10 Ara 2025