Vulnerabilidades

Resumen — últimos 7 días

Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
–

205 resultados, ordenados por fecha de publicación (más recientes primero)

CVEEstadoSeveridadEPSS Explotación activaTecnologías afectadasPublicada ▼Modificada Descripción
ModificadaMedia (4.3)1.5%💥 ExploitPscs Vpop3 WEB Mail Server31/12/200316/6/2026
Cross-site scripting (XSS) vulnerability in PSCS VPOP3 Web Mail server 2.0e and 2.0f allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to the admin/index.html page.
ModificadaAlta (10)69%💥 ExploitTruenorth Software IA Webmail Server3/11/200316/6/2026
Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET request.
ModificadaAlta (7.5)3.5%💥 ExploitAmax Information Technologies Magic Winmail Server2/7/200316/6/2026
Format string vulnerability in Magic WinMail Server 2.3, and possibly other 2.x versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the PASS command.
ModificadaMedia (5)1.2%—Inweb Mail Server31/12/200216/6/2026
Buffer overflow in INweb POP3 mail server 2.01 allows remote attackers to cause a denial of service (crash) via a long HELO command.
ModificadaMedia (5)3.0%💥 ExploitVirtualzone Smartmail Server31/12/200216/6/2026
SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connection before all the data has been sent.
ModificadaMedia (4.3)1.2%—Argosoft Mail Server31/12/200216/6/2026
Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message.
ModificadaMedia (5)3.3%💥 ExploitVirtualzone Smartmail Server31/12/200216/6/2026
Buffer overflow in SmartMail Server 1.0 Beta 10 allows remote attackers to cause a denial of service (crash) via a long request to (1) TCP port 25 (SMTP) or (2) TCP port 110 (POP3).
ModificadaMedia (5)2.0%—Argosoft Mail Server4/10/200216/6/2026
ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop.
ModificadaMedia (5)8.3%💥 ExploitArgosoft Mail Server4/10/200216/6/2026
Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL.
ModificadaAlta (7.5)1.4%—Icewarp WEB MailMerak Mail Server29/5/200216/6/2026
Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that user, e.g. by extracting the ID from the user's answer or forward URLs.
ModificadaAlta (7.5)2.7%—Qualcomm Eudora Worldmail Server16/7/200116/6/2026
Vulnerabilities in Qualcomm Eudora WorldMail Server may allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite.
ModificadaAlta (7.5)3.9%—Lotus Domino Mail Server2/6/200116/6/2026
Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long "RCPT TO" command.
ModificadaAlta (7.5)1.9%—Lotus Domino Mail Server1/3/200116/6/2026
Unknown vulnerability in the SMTP server in Lotus Domino 5.0 through 5.7 allows remote attackers to bypass mail relaying restrictions via crafted e-mail addresses in "RCPT TO" commands.
ModificadaAlta (10)4.1%—Upland Solutions 1ST UP Mail Server12/2/200116/6/2026
Buffer overflow in 1st Up Mail Server 4.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long MAIL FROM command.
ModificadaAlta (10)5.6%💥 ExploitAvirt Mail Server19/12/200023/9/2026
Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command.
ModificadaAlta (10)4.4%—Lotus Domino Enterprise ServerLotus Domino Mail Server11/12/200016/6/2026
Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command.
ModificadaMedia (5)7.3%💥 ExploitConcatus Imate Webmail Server1/6/200016/6/2026
Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command.
ModificadaAlta (10)3.8%—Ithouse Mail Server30/5/200016/6/2026
Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command.
ModificadaMedia (5)7.7%💥 ExploitLotus Domino Enterprise ServerLotus Domino Mail Server18/5/200016/6/2026
Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command.
ModificadaMedia (5)1.3%—True North Internet Anywhere Mail Server10/2/200016/6/2026
Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connections.
ModificadaAlta (10)3.0%—CSM Mail Server29/12/199916/6/2026
Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command.
ModificadaBaja (2.1)0.59%💥 ExploitTrue North Internet Anywhere Mail Server3/12/199916/6/2026
Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command.
ModificadaMedia (4.6)0.43%—True North Internet Anywhere Mail Server1/10/199916/6/2026
Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf.
ModificadaMedia (5)1.3%—True North Internet Anywhere Mail Server1/10/199916/6/2026
Internet Anywhere POP3 Mail Server 2.3.1 allows remote attackers to cause a denial of service (crash) via (1) LIST, (2) TOP, or (3) UIDL commands using letters as arguments.
ModificadaMedia (5)6.7%💥 ExploitTrue North Internet Anywhere Mail Server1/10/199916/6/2026
Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username.
Orbitaley — Vulnerabilidades