İçeriğe atla
Noroxi

Postfix kayıtları

postfix üreticisine ait 12 yayımlanmış kayıt.

Tüm kayıtlar

12 kayıt
  • CVE-2011-1720
    33İzleyin

    The SMTP server in Postfix before 2.5.13, 2.6.x before 2.6.10, 2.7.x before 2.7.4, and 2.8.x before 2.8.3, when certain Cyrus SASL authentic

    OrtaCVSS 6,8İstismar yokEPSS %21

    postfix · postfix13 May 2011

  • CVE-2011-0411
    32İzleyin

    The STARTTLS implementation in Postfix 2.4.x before 2.4.16, 2.5.x before 2.5.12, 2.6.x before 2.6.9, and 2.7.x before 2.7.3 does not properl

    OrtaCVSS 6,8İstismar yokEPSS %16

    postfix · postfix16 Mar 2011

  • CVE-2017-10140
    31İzleyin

    Postfix before 2.11.10, 3.0.x before 3.0.10, 3.1.x before 3.1.6, and 3.2.x before 3.2.2 might allow local users to gain privileges by levera

    YüksekCVSS 7,8İstismar yokEPSS %1

    postfix · postfix16 Nis 2018

  • CVE-2026-43964
    30İzleyin

    Postfix before 3.8.16, 3.9 before 3.9.10, and 3.10 before 3.10.9 sometimes allows a buffer over-read and process crash via an enhanced statu

    YüksekCVSS 7,5İstismar yokEPSS %1

    postfix · postfix4 May 2026

  • CVE-2012-0811
    27İzleyin

    Multiple SQL injection vulnerabilities in Postfix Admin (aka postfixadmin) before 2.3.5 allow remote authenticated users to execute arbitrar

    OrtaCVSS 6,5İstismar yokEPSS %2

    postfix · postfix1 Eki 2014

  • CVE-2009-2939
    27İzleyin

    The postfix.postinst script in the Debian GNU/Linux and Ubuntu postfix 2.5.5 package grants the postfix user write access to /var/spool/post

    OrtaCVSS 6,9İstismar yokEPSS %0

    postfix · postfix21 Eyl 2009

  • CVE-2008-4977
    27İzleyin

    postfix_groups.pl in Postfix 2.5.2 allows local users to overwrite arbitrary files via a symlink attack on the (1) /tmp/postfix_groups.stdou

    OrtaCVSS 6,9İstismar yokEPSS %0

    postfix · postfix6 Kas 2008

  • CVE-2008-2936
    24İzleyin

    Postfix before 2.3.15, 2.4 before 2.4.8, 2.5 before 2.5.4, and 2.6 before 2.6-20080814, when the operating system supports hard links to sym

    OrtaCVSS 6,2Kavram kanıtıEPSS %1

    postfix · postfix18 Ağu 2008

  • CVE-2023-51764
    22İzleyin

    Postfix through 3.8.5 allows SMTP smuggling unless configured with smtpd_data_restrictions=reject_unauth_pipelining and smtpd_discard_ehlo_k

    OrtaCVSS 5,3Kavram kanıtıEPSS %3

    postfix · postfix24 Ara 2023

  • CVE-2020-12063
    21İzleyin

    A certain Postfix 2.10.1-7 package could allow an attacker to send an email from an arbitrary-looking sender via a homoglyph attack, as demo

    OrtaCVSS 5,3İstismar yokEPSS %1

    postfix · postfix24 Nis 2020

  • CVE-2008-3889
    8İzleyin

    Postfix 2.4 before 2.4.9, 2.5 before 2.5.5, and 2.6 before 2.6-20080902, when used with the Linux 2.6 kernel, leaks epoll file descriptors d

    DüşükCVSS 2,1İstismar yokEPSS %1

    linux · linux kernel12 Eyl 2008

  • CVE-2008-2937
    7İzleyin

    Postfix 2.5 before 2.5.4 and 2.6 before 2.6-20080814 delivers to a mailbox file even when this file is not owned by the recipient, which all

    DüşükCVSS 1,9İstismar yokEPSS %0

    postfix · postfix18 Ağu 2008