Vulnerability index

Browse CVEs

83 matching
Filters 1 Clear all
Severity

Filters apply as you choose them.

Mailenable CRITICAL 9.8
CVE-2026-44400

MailEnable Enterprise Premium 10.55 and earlier contains an improper authorization vulnerability in the WebAdmin mobile portal that allows attackers …

Fix: 10.56+
Fix from $2,300 2026-05-08
Mailenable MEDIUM 6.1
CVE-2026-32851

MailEnable versions prior to 10.55 contain a reflected cross-site scripting vulnerability in the webmail interface that allows remote attackers to ex…

Fix: 10.55+
Fix from $1,600 2026-03-23
Mailenable MEDIUM 6.1
CVE-2026-32852

MailEnable versions prior to 10.55 contain a reflected cross-site scripting vulnerability in the webmail interface that allows remote attackers to ex…

Fix: 10.55+
Fix from $1,600 2026-03-23
Mailenable MEDIUM 6.1
CVE-2026-32850

MailEnable versions prior to 10.55 contain a reflected cross-site scripting vulnerability in the webmail interface that allows remote attackers to ex…

Fix: 10.55+
Fix from $1,600 2026-03-23
Mailenable HIGH 7.8
CVE-2025-34427

MailEnable versions prior to 10.54 contain a cleartext storage of credentials vulnerability that can lead to local credential compromise and account …

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34428

MailEnable versions prior to 10.54 contain a cleartext storage of credentials vulnerability that can lead to local credential compromise and account …

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34423

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34424

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34417

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34418

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34419

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34420

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34421

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34422

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable HIGH 7.8
CVE-2025-34416

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-10
Mailenable MEDIUM 6.1
CVE-2025-34425

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the WindowContext parameter of /Mondo/lang/sys/For…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34406

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the Id parameter of /Mobile/ContactDetails.aspx. T…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34407

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the theme parameter of /Mondo/lang/sys/Forms/Stati…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34408

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the Added parameter of /Mondo/lang/sys/Forms/MAI/A…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34409

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the Failed parameter of /Mondo/lang/sys/Forms/MAI/…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34398

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the AddressesBcc parameter of /Mondo/lang/sys/Form…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34399

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the AddressesCc parameter of /Mondo/lang/sys/Forms…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34400

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the AddressesTo parameter of /Mondo/lang/sys/Forms…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34401

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the FieldBcc parameter of /Mondo/lang/sys/Forms/Ad…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34402

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the FieldCc parameter of /Mondo/lang/sys/Forms/Add…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34403

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the FieldTo parameter of /Mondo/lang/sys/Forms/Add…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34404

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the InstanceScope parameter of /Mondo/lang/sys/For…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable HIGH 7.3
CVE-2025-34396

MailEnable versions prior to 10.54 contain an unsafe DLL loading vulnerability that can lead to local arbitrary code execution. The MailEnable admini…

Fix: 10.54+
Fix from $1,950 2025-12-09
Mailenable MEDIUM 6.1
CVE-2025-34397

MailEnable versions prior to 10.54 contain a reflected cross-site scripting (XSS) vulnerability in the Message parameter of /Mobile/Compose.aspx. The…

Fix: 10.54+
Fix from $1,600 2025-12-09
Mailenable CRITICAL 9.8
CVE-2025-44148EPSS 58%

Cross Site Scripting (XSS) vulnerability in MailEnable before v10 allows a remote attacker to execute arbitrary code via the failure.aspx component

Fix: 10.00+
Fix from $2,300 2025-06-03