Vulnerabilities (CVE)

Filtered by vendor Titanhq Subscribe
Filtered by product Spamtitan
CVE Vendors Products Updated CVSS v2 CVSS v3
CVE-2020-11700 1 Titanhq 1 Spamtitan 2021-07-21 4.0 MEDIUM 6.5 MEDIUM
An issue was discovered in Titan SpamTitan 7.07. Improper sanitization of the parameter fname, used on the page certs-x.php, would allow an attacker to retrieve the contents of arbitrary files. The user has to be authenticated before interacting with this page.
CVE-2020-35658 1 Titanhq 1 Spamtitan 2021-07-21 5.0 MEDIUM 5.3 MEDIUM
SpamTitan before 7.09 allows attackers to tamper with backups, because backups are not encrypted.
CVE-2018-15136 1 Titanhq 1 Spamtitan 2019-02-22 2.6 LOW 5.3 MEDIUM
TitanHQ SpamTitan before 7.01 has Improper input validation. This allows internal attackers to bypass the anti-spam filter to send malicious emails to an entire organization by modifying the URL requests sent to the application.