Vulnerabilidades
Resumen — últimos 7 días
Vulnerabilidades nuevas2687▼ 562 respecto a la semana anterior
Críticas / altas1259▼ 239 respecto a la semana anterior
Nueva explotación activa (KEV)4▼ 5 respecto a la semana anterior
Sin puntuar (sin CVSS)265▼ 239 respecto a la semana anterior
205 resultados, ordenados por fecha de publicación (más recientes primero)
| CVE | Estado | Severidad | EPSS | Explotación activa | Tecnologías afectadas | Publicada ▼ | Modificada | Descripción |
|---|---|---|---|---|---|---|---|---|
| Modificada | Media (4.3) | 1.5% | 💥 Exploit | Pscs Vpop3 WEB Mail Server | 31/12/2003 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in PSCS VPOP3 Web Mail server 2.0e and 2.0f allows remote attackers to inject arbitrary web script or HTML via the redirect parameter to the admin/index.html page. | |
| Modificada | Alta (10) | 69% | 💥 Exploit | Truenorth Software IA Webmail Server | 3/11/2003 | 16/6/2026 | Stack-based buffer overflow in IA WebMail Server 3.1.0 allows remote attackers to execute arbitrary code via a long GET request. | |
| Modificada | Alta (7.5) | 3.5% | 💥 Exploit | Amax Information Technologies Magic Winmail Server | 2/7/2003 | 16/6/2026 | Format string vulnerability in Magic WinMail Server 2.3, and possibly other 2.x versions, allows remote attackers to cause a denial of service (crash) and possibly execute arbitrary code via format string specifiers in the PASS command. | |
| Modificada | Media (5) | 1.2% | — | Inweb Mail Server | 31/12/2002 | 16/6/2026 | Buffer overflow in INweb POP3 mail server 2.01 allows remote attackers to cause a denial of service (crash) via a long HELO command. | |
| Modificada | Media (5) | 3.0% | 💥 Exploit | Virtualzone Smartmail Server | 31/12/2002 | 16/6/2026 | SmartMail Server 2.0 allows remote attackers to cause a denial of service (crash) by sending data and closing the connection before all the data has been sent. | |
| Modificada | Media (4.3) | 1.2% | — | Argosoft Mail Server | 31/12/2002 | 16/6/2026 | Cross-site scripting (XSS) vulnerability in ArGoSoft Mail Server Pro 1.8.1.9 allows remote attackers to inject arbitrary web script or HTML via the e-mail message. | |
| Modificada | Media (5) | 3.3% | 💥 Exploit | Virtualzone Smartmail Server | 31/12/2002 | 16/6/2026 | Buffer overflow in SmartMail Server 1.0 Beta 10 allows remote attackers to cause a denial of service (crash) via a long request to (1) TCP port 25 (SMTP) or (2) TCP port 110 (POP3). | |
| Modificada | Media (5) | 2.0% | — | Argosoft Mail Server | 4/10/2002 | 16/6/2026 | ArGoSoft Mail Server 1.8.1.7 and earlier allows a webmail user to cause a denial of service (CPU consumption) by forwarding the email to the user while autoresponse is enabled, which creates an infinite loop. | |
| Modificada | Media (5) | 8.3% | 💥 Exploit | Argosoft Mail Server | 4/10/2002 | 16/6/2026 | Directory traversal vulnerability in webmail feature of ArGoSoft Mail Server Plus or Pro 1.8.1.5 and earlier allows remote attackers to read arbitrary files via .. (dot dot) sequences in a URL. | |
| Modificada | Alta (7.5) | 1.4% | — | Icewarp WEB MailMerak Mail Server | 29/5/2002 | 16/6/2026 | Merak Mail IceWarp Web Mail uses a static identifier as a user session ID that does not change across sessions, which could allow remote attackers with access to the ID to gain privileges as that user, e.g. by extracting the ID from the user's answer or forward URLs. | |
| Modificada | Alta (7.5) | 2.7% | — | Qualcomm Eudora Worldmail Server | 16/7/2001 | 16/6/2026 | Vulnerabilities in Qualcomm Eudora WorldMail Server may allow remote attackers to cause a denial of service (crash) and possibly execute arbitrary code, as demonstrated by the PROTOS LDAPv3 test suite. | |
| Modificada | Alta (7.5) | 3.9% | — | Lotus Domino Mail Server | 2/6/2001 | 16/6/2026 | Buffer overflow in Lotus Domino Mail Server 5.0.5 and earlier allows a remote attacker to crash the server or execute arbitrary code via a long "RCPT TO" command. | |
| Modificada | Alta (7.5) | 1.9% | — | Lotus Domino Mail Server | 1/3/2001 | 16/6/2026 | Unknown vulnerability in the SMTP server in Lotus Domino 5.0 through 5.7 allows remote attackers to bypass mail relaying restrictions via crafted e-mail addresses in "RCPT TO" commands. | |
| Modificada | Alta (10) | 4.1% | — | Upland Solutions 1ST UP Mail Server | 12/2/2001 | 16/6/2026 | Buffer overflow in 1st Up Mail Server 4.1 allows remote attackers to cause a denial of service, and possibly execute arbitrary commands, via a long MAIL FROM command. | |
| Modificada | Alta (10) | 5.6% | 💥 Exploit | Avirt Mail Server | 19/12/2000 | 23/9/2026 | Avirt Mail 4.0 and 4.2 allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long "RCPT TO" or "MAIL FROM" command. | |
| Modificada | Alta (10) | 4.4% | — | Lotus Domino Enterprise ServerLotus Domino Mail Server | 11/12/2000 | 16/6/2026 | Buffer overflow in SMTP service of Lotus Domino 5.0.4 and earlier allows remote attackers to cause a denial of service and possibly execute arbitrary commands via a long ENVID keyword in the "MAIL FROM" command. | |
| Modificada | Media (5) | 7.3% | 💥 Exploit | Concatus Imate Webmail Server | 1/6/2000 | 16/6/2026 | Imate Webmail Server 2.5 allows remote attackers to cause a denial of service via a long HELO command. | |
| Modificada | Alta (10) | 3.8% | — | Ithouse Mail Server | 30/5/2000 | 16/6/2026 | Buffer overflow in ITHouse mail server 1.04 allows remote attackers to execute arbitrary commands via a long RCPT TO mail command. | |
| Modificada | Media (5) | 7.7% | 💥 Exploit | Lotus Domino Enterprise ServerLotus Domino Mail Server | 18/5/2000 | 16/6/2026 | Buffer overflow in the ESMTP service of Lotus Domino Server 5.0.1 allows remote attackers to cause a denial of service via a long MAIL FROM command. | |
| Modificada | Media (5) | 1.3% | — | True North Internet Anywhere Mail Server | 10/2/2000 | 16/6/2026 | Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service via a large number of connections. | |
| Modificada | Alta (10) | 3.0% | — | CSM Mail Server | 29/12/1999 | 16/6/2026 | Buffer overflow in CSM mail server allows remote attackers to cause a denial of service or execute commands via a long HELO command. | |
| Modificada | Baja (2.1) | 0.59% | 💥 Exploit | True North Internet Anywhere Mail Server | 3/12/1999 | 16/6/2026 | Internet Anywhere POP3 Mail Server allows local users to cause a denial of service via a malformed RETR command. | |
| Modificada | Media (4.6) | 0.43% | — | True North Internet Anywhere Mail Server | 1/10/1999 | 16/6/2026 | Internet Anywhere Mail Server 2.3.1 stores passwords in plaintext in the msgboxes.dbf file, which could allow local users to gain privileges by extracting the passwords from msgboxes.dbf. | |
| Modificada | Media (5) | 1.3% | — | True North Internet Anywhere Mail Server | 1/10/1999 | 16/6/2026 | Internet Anywhere POP3 Mail Server 2.3.1 allows remote attackers to cause a denial of service (crash) via (1) LIST, (2) TOP, or (3) UIDL commands using letters as arguments. | |
| Modificada | Media (5) | 6.7% | 💥 Exploit | True North Internet Anywhere Mail Server | 1/10/1999 | 16/6/2026 | Buffer overflow in Internet Anywhere POP3 Mail Server allows remote attackers to cause a denial of service or execute commands via a long username. |