Vulnerability index

Browse CVEs

9 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Vhostadmin HIGH 7.5
CVE-2007-0558

PHP remote file inclusion vulnerability in modules/mail/main.php in Inter7 vHostAdmin 1.0 allows remote attackers to execute arbitrary PHP code via a…

No fix yet
Fix from $1,950 2007-01-30
Vpopmail \(vchkpw\) HIGH 7.5
CVE-2006-2346

vpopmail 5.4.14 and 5.4.15, with cleartext passwords enabled, allows remote attackers to authenticate to an account that does not have a cleartext pa…

Patch available
Fix from $1,950 2006-05-12
Qmailadmin HIGH 7.5
CVE-2006-1141

Buffer overflow in qmailadmin.c in QmailAdmin before 1.2.10 allows remote attackers to execute arbitrary code via a long PATH_INFO environment variab…

Patch available
Fix from $1,950 2006-03-10
Sqwebmail HIGH 7.5
CVE-2005-1308

SqWebMail allows remote attackers to inject arbitrary web script or HTML via CRLF sequences in the redirect parameter followed by the desired script …

Mitigation only
Fix from $1,950 2005-04-15
Sqwebmail MEDIUM 5.0
CVE-2004-2313

Inter7 SqWebMail 3.4.1 through 3.6.1 generates different error messages for incorrect passwords versus correct passwords on non-mail-enabled accounts…

Mitigation only
Fix from $1,600 2004-12-31
Courier Imap HIGH 7.5
CVE-2004-0777EPSS 11%

Format string vulnerability in the auth_debug function in Courier-IMAP 1.6.0 through 2.2.1 and 3.x through 3.0.3, when login debugging (DEBUG_LOGIN) …

Mitigation only
Fix from $1,950 2004-10-20
Sqwebmail MEDIUM 6.8
CVE-2004-0591

Cross-site scripting (XSS) vulnerability in the print_header_uc function for SqWebMail 4.0.4 and earlier, and possibly 3.x, allows remote attackers t…

Patch available
Fix from $1,600 2004-08-06
Vpopmail Vchkpw MEDIUM 5.0
CVE-2000-0583

vchkpw program in vpopmail before version 4.8 does not properly cleanse an untrusted format string used in a call to syslog, which allows remote atta…

Mitigation only
Fix from $1,600 2000-06-30
Vpopmail HIGH 10.0
CVE-2000-0091EPSS 13%

Buffer overflow in vchkpw/vpopmail POP authentication package allows remote attackers to gain root privileges via a long username or password.

Mitigation only
Fix from $1,950 2000-01-21