VYPR

Mailessentials

by Gfi

CVEs (22)

  • CVE-2026-23620MedFeb 19, 2026
    risk 0.28cvss 4.3epss 0.00

    GFI MailEssentials AI versions prior to 22.4 contain an arbitrary file existence enumeration vulnerability in the ListServer.IsDBExist() web method exposed at /MailEssentials/pages/MailSecurity/ListServer.aspx/IsDBExist. An authenticated user can supply an unrestricted…

  • CVE-2004-1312Jan 3, 2005
    risk 0.00cvss epss 0.02

    A bug in the HTML parser in a certain Microsoft HTML library, as used in various third party products, may allow remote attackers to cause a denial of service via certain strings, as reported in GFI MailEssentials for Exchange 9 and 10, and GFI MailSecurity for Exchange 8, which…

Page 2 of 2