Vulnerabilities (CVE)

Filtered by vendor Altn Subscribe
Filtered by product Mdaemon
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2022-29976 1 Altn 1 Mdaemon 2022-05-17 3.5 LOW 5.4 MEDIUM
An Authenticated Reflected Cross-site scripting at BCC Parameter was discovered in MDaemon before 22.0.0 .
CVE-2022-29975 1 Altn 1 Mdaemon 2022-05-17 3.5 LOW 5.4 MEDIUM
An Authenticated Reflected Cross-site scripting at CC Parameter was discovered in MDaemon before 22.0.0 .
CVE-2021-27180 1 Altn 1 Mdaemon 2021-04-21 4.3 MEDIUM 6.1 MEDIUM
An issue was discovered in MDaemon before 20.0.4. There is Reflected XSS in Webmail (aka WorldClient). It can be exploited via a GET request. It allows performing any action with the privileges of the attacked user.
CVE-2019-8983 1 Altn 1 Mdaemon 2019-02-21 4.3 MEDIUM 6.1 MEDIUM
MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 1 of 2).
CVE-2019-8984 1 Altn 1 Mdaemon 2019-02-21 4.3 MEDIUM 6.1 MEDIUM
MDaemon Webmail 14.x through 18.x before 18.5.2 has XSS (issue 2 of 2).