Rockliffe
Rockliffe Mailsite Express: vulnerabilidades y CVE
Rockliffe Mailsite Express tiene 6 vulnerabilidades publicadas, 0 de ellas en los últimos 12 meses. 0 son críticas y 0 figuran en el catálogo de explotación activa de CISA.
CVE6
Últimos 12 meses0
Críticas0
Explotadas activamente0
Todas las vulnerabilidades en el catálogo →⭐ Seguir esta tecnología
Últimas vulnerabilidades
| CVE | Severidad | EPSS | Explotación activa | Publicada | Descripción |
|---|---|---|---|---|---|
| CVE-2005-3429 | Media (4.3) | 2.4% | — | 2 nov 2005 | Rockliffe MailSite Express before 6.1.22, with the option to save login information enabled, saves user passwords in plaintext in cookies, which allows local users to obtain passwords by reading the cookie file, or… |
| CVE-2005-3430 | Alta (7.5) | 1.8% | — | 2 nov 2005 | Incomplete blacklist vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to upload and execute arbitrary script files by giving the files specific extensions, such as (1) .unk, (2) .asa,… |
| CVE-2005-3428 | Media (4.3) | 1.5% | — | 2 nov 2005 | Cross-site scripting (XSS) vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to inject arbitrary web script or HTML via a message body. |
| CVE-2005-3431 | Media (5) | 1.6% | — | 2 nov 2005 | Absolute path traversal vulnerability in Rockliffe MailSite Express before 6.1.22 allows remote attackers to read arbitrary files via a full pathname in the AttachPath field of a mail message under composition. |
| CVE-2005-3288 | Media (5) | 1.6% | — | 23 oct 2005 | Mailsite Express allows remote attackers to upload and execute files with executable extensions such as ASP by attaching the file using the "compose page" feature, then accessing the file from the cache directory before… |
| CVE-2005-3287 | Media (5) | 1.4% | — | 23 oct 2005 | Incomplete blacklist vulnerability in Mailsite Express allows remote attackers to upload and possibly execute files via attachments with executable extensions such as ASPX, which are not converted to .TXT like other… |